(Enter summary)
Abstract: This paper presents a taxonomy of intrusion detection systems that is then used to survey and classify a number of research prototypes. The taxonomy consists of a classification first of the detection principle, and second of certain operational aspects of the intrusion detection system as such. The systems are also grouped according to the increasing difficulty of the problem they attempt to address. These classifications are used predictively, pointing towards a number of areas of future... (Update)
Cited by: More
Taxonomy of Honeypots - Seifert, Welch, Komisarczuk (2006)
(Correct)
Ubiquitous Redirection as Access Control Response - George Bakos Gbakos (2005)
(Correct)
NSOM: A Tool To Detect Denial Of Service Attacks Using.. - Labib, Vemuri (2003)
(Correct)
Similar documents (at the sentence level):
9.1%: Research in Intrusion-Detection Systems: A Survey - Axelsson (1998)
(Correct)
Active bibliography (related documents): More All
0.8: Intrusion Detection: A Bibliography - Mé, Michel (2001)
(Correct)
0.7: Intrusion Detection: A Study - Blomqvist, Skantze (1995)
(Correct)
0.7: A Multiagent Approach to Outbound Intrusion Detection - Mandujano (2004)
(Correct)
Similar documents based on text: More All
0.2: Survey of Intrusion Detection Research - Lundin, Jonsson (2002)
(Correct)
0.2: The Base-Rate Fallacy and its Implications for the - Difficulty Of Intrusion
(Correct)
0.1: Visualising the Inner Workings of a Self Learning Classifier.. - Axelsson (2004)
(Correct)
Related documents from co-citation: More All
7: Practical network support for ip traceback
- Savage, Wetherall et al. - 2000
7: SOS: Secure Overlay Services
- Keromytis, Misra et al. - 2002
6: Hash-Based IP Traceback
- Snoeren, Partridge et al. - 2001
BibTeX entry: (Update)
S. Axelsson. Intrusion Detection Systems: A Survey and Taxonomy. Technical Report 99-15, Depart. of Computer Engineering, Chalmers University, march 2000. http://citeseer.ist.psu.edu/axelsson00intrusion.html More
@techreport{ axelsson00intrusion,
author = "Stefan Axelsson",
title = "Intrusion Detection Systems: A Survey and Taxonomy",
institution = "Chalmers Univ.",
number = "99-15",
month = mar,
year = "2000",
url = "citeseer.ist.psu.edu/axelsson00intrusion.html",
url = "http://citeseer.nj.nec.com/axelsson00intrusion.html" }
Citations (may not include all citations):
175
A secure environment for untrusted helper applications
- Goldberg, Wagner et al. - 1996
132
EMERALD: Event monitoring enabling responses to anomalous li..
- Porras, Neumann - 1997
121
Network intrusion detection (context) - Mukherjee, Heberlein et al. - 1994
105
State transition analysis: A rule-based intrusion detection ..
- Ilgun, Kemmerer et al. - 1995 DBLP
70
A data mining framework for building intrusion detection MOd..
- Lee - 1999 DBLP
68
A network security monitor (context) - Heberlein, Dias et al. - 1990
65
Bro: A system for detecting network intruders in real-time
- Paxon - 1988 DBLP
63
Next-generation intrusion-detection expert system
- Anderson, Frivold et al. - 1995
60
Detecting intrusions using system calls: Alternative data mo..
- Warrender, Forrest et al. - 1999 DBLP
59
Execution Monitoring of Security-critical Programs in a Dist.. (context) - Ko - 1996
59
USTAT: A real-time intrusion detection system for UNIX
- Ilgun - 1993
58
A pattern matching model for misuse intrusion detection
- Kumar, Spafford - 1994
56
A real-time intrusion-detection expert system (context) - Lunt, Tamaru et al. - 1992
52
Automated detection of vulnerabilities in privileged program..
- Ko, Fink et al. - 1994
48
Classification and Detection of Computer Intrusions
- Kumar - 1995 ACM
43
NADIR: An automated system for detecting network intrusion a.. (context) - Hochberg, Jackson et al. - 1993
41
Expert systems in intrusion detection: A case study (context) - Sebring, Shellhouse et al. - 1988
40
Temporal sequence learning and data reduction for anomaly de..
- Lane, Brodie - 1998 ACM DBLP
39
Detecting computer and network misuse through the production..
- Lindqvist, Phillip - 1999
38
Haystack: An intrusion detection system (context) - Smaha - 1988
37
An application of pattern matching in intrusion detection
- Kumar, Spafford - 1994
34
A neural network component for an intrusion detection system (context) - Debar, Becker et al. - 1992 ACM
32
Towards a taxonomy of intrusiondetection systems (context) - Debar, Dacier et al. - 1999
31
Detection of anomalous computer session activity (context) - Vaccaro, Liepins - 1989 DBLP
28
ASAX: Software architecture and rule-based language for univ..
- Habra, Le Charlier et al. - 1992
27
Automated audit trail analysis and intrusion detection: A su..
- Lunt - 1988
22
TCP WRAPPER: Network monitoring (context) - Venema - 1992
20
Detecting unusual program behavior using the statistical com.. (context) - Anderson, Lunt et al. - 1995
19
How to systematically classify computer security intrusions (context) - Lindqvist, Jonsson - 1997
18
An expert system application for network intrusion detection (context) - Jackson, DuBois et al. - 1991
17
The base-rate fallacy and its implications for the difficult..
- Axelsson - 1999
15
Live traffic analysis of TCP/IP gateways (context) - Porras, Valdes - 1998
13
A data mining analysis of RTID alarms (context) - Manganaris, Christensen et al. - 1999 ACM DBLP
12
Statistical foundations of audit trail analysis for the dete.. (context) - Helman, Liepins - 1993
12
An approach to UNIX security logging
- Axelsson, Lindqvist et al. - 1998
12
GrIDS---A graph based intrusion detection system for large n.. (context) - ford, Cheung et al. - 1996
11
Architecture design of a scalable intrusion detection system..
- Jou, Gong et al. - 1997
10
A summary of computer misuse techniques (context) - Neumann, Parker - 1989
9
IDIOT--- Users Guide
- Crosbie, Dole et al. - 1996
7
Cooperating security managers: Distributed intrusion detecti.. (context) - White, Pooch - 1996
6
The computer watch data reduction tool (context) - Dowel, Ramstedt - 1990
6
distributed intrusion detection system) prototype (context) - Snapp, Smaha et al. - 1992
5
Dealing with complexity---An introduction to the theory and .. (context) - Flood, Carson - 1993
4
Intrusion detection: A survey (context) - Esmaili, Safavi et al. - 1995
2
A software architechture to support misuse intrusion detecti.. (context) - Kumar, Spafford - 1995
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.ce.chalmers.se/staff/sax/): More
An Approach to UNIX Security Logging - Axelsson, Lindqvist, Gustafson.. (1998)
(Correct)
A Comparison of the Security of Windows NT and UNIX - Hedbom, Lindskog, Axelsson, .. (1998)
(Correct)
On a Difficulty of Intrusion Detection - Axelsson (1999)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC