谷歌浏览器插件
订阅小程序
在清言上使用

Intrusion detection using alert prioritization and multiple minimum supports

2015 14th RoEduNet International Conference - Networking in Education and Research (RoEduNet NER)(2015)

引用 4|浏览8
暂无评分
摘要
Due to increase in traffic volume, current commercial IDSs (Intrusion Detection Systems) usually tend to produce a very large number of alarms. Although these alarms are triggered by actual intrusions, they are often triggered by regular user behavior, thus increasing the false alarm rate and overwhelming the security administrator. Mining algorithms that identify association rules provide an in-depth analysis of security breaches and extend the functionality of IDSs. In this paper we present a potential solution for reducing the false alarm rate. Our approach is based on the prioritization of alerts, a rescoring mechanism and data mining techniques with multiple minimum supports.
更多
查看译文
关键词
Intrusion detection,Alert correlation,Alert prioritization,Data mining,Multiple minimum supports
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要