See this document in CiteSeerX!

Intrusion Detection Systems: A Survey and Taxonomy (2000)  (Make Corrections)  (21 citations)
Stefan Axelsson
Chalmers Univ.



  Home/Search   Context   Related

 
View or download:
ce.chalmers.se/staff/sax/taxonomy.ps
cs.chalmers.se/~sax/pub/taxonomy.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  ce.chalmers.se/staff/sax/ (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: This paper presents a taxonomy of intrusion detection systems that is then used to survey and classify a number of research prototypes. The taxonomy consists of a classification first of the detection principle, and second of certain operational aspects of the intrusion detection system as such. The systems are also grouped according to the increasing difficulty of the problem they attempt to address. These classifications are used predictively, pointing towards a number of areas of future... (Update)

Cited by:   More
Taxonomy of Honeypots - Seifert, Welch, Komisarczuk (2006)   (Correct)
Ubiquitous Redirection as Access Control Response - George Bakos Gbakos (2005)   (Correct)
NSOM: A Tool To Detect Denial Of Service Attacks Using.. - Labib, Vemuri (2003)   (Correct)

Similar documents (at the sentence level):
9.1%:   Research in Intrusion-Detection Systems: A Survey - Axelsson (1998)   (Correct)

Active bibliography (related documents):   More   All
0.8:   Intrusion Detection: A Bibliography - Mé, Michel (2001)   (Correct)
0.7:   Intrusion Detection: A Study - Blomqvist, Skantze (1995)   (Correct)
0.7:   A Multiagent Approach to Outbound Intrusion Detection - Mandujano (2004)   (Correct)

Similar documents based on text:   More   All
0.2:   Survey of Intrusion Detection Research - Lundin, Jonsson (2002)   (Correct)
0.2:   The Base-Rate Fallacy and its Implications for the - Difficulty Of Intrusion   (Correct)
0.1:   Visualising the Inner Workings of a Self Learning Classifier.. - Axelsson (2004)   (Correct)

Related documents from co-citation:   More   All
7:   Practical network support for ip traceback - Savage, Wetherall et al. - 2000
7:   SOS: Secure Overlay Services - Keromytis, Misra et al. - 2002
6:   Hash-Based IP Traceback - Snoeren, Partridge et al. - 2001

BibTeX entry:   (Update)

S. Axelsson. Intrusion Detection Systems: A Survey and Taxonomy. Technical Report 99-15, Depart. of Computer Engineering, Chalmers University, march 2000. http://citeseer.ist.psu.edu/axelsson00intrusion.html   More

@techreport{ axelsson00intrusion,
  author = "Stefan Axelsson",
  title = "Intrusion Detection Systems: A Survey and Taxonomy",
  institution = "Chalmers Univ.",
  number = "99-15",
  month = mar,
  year = "2000",
  url = "citeseer.ist.psu.edu/axelsson00intrusion.html",
  url = "http://citeseer.nj.nec.com/axelsson00intrusion.html" }
Citations (may not include all citations):
175   A secure environment for untrusted helper applications - Goldberg, Wagner et al. - 1996
132   EMERALD: Event monitoring enabling responses to anomalous li.. - Porras, Neumann - 1997
121   Network intrusion detection (context) - Mukherjee, Heberlein et al. - 1994
105   State transition analysis: A rule-based intrusion detection .. - Ilgun, Kemmerer et al. - 1995  DBLP
70   A data mining framework for building intrusion detection MOd.. - Lee - 1999  DBLP
68   A network security monitor (context) - Heberlein, Dias et al. - 1990
65   Bro: A system for detecting network intruders in real-time - Paxon - 1988  DBLP
63   Next-generation intrusion-detection expert system - Anderson, Frivold et al. - 1995
60   Detecting intrusions using system calls: Alternative data mo.. - Warrender, Forrest et al. - 1999  DBLP
59   Execution Monitoring of Security-critical Programs in a Dist.. (context) - Ko - 1996
59   USTAT: A real-time intrusion detection system for UNIX - Ilgun - 1993
58   A pattern matching model for misuse intrusion detection - Kumar, Spafford - 1994
56   A real-time intrusion-detection expert system (context) - Lunt, Tamaru et al. - 1992
52   Automated detection of vulnerabilities in privileged program.. - Ko, Fink et al. - 1994
48   Classification and Detection of Computer Intrusions - Kumar - 1995  ACM
43   NADIR: An automated system for detecting network intrusion a.. (context) - Hochberg, Jackson et al. - 1993
41   Expert systems in intrusion detection: A case study (context) - Sebring, Shellhouse et al. - 1988
40   Temporal sequence learning and data reduction for anomaly de.. - Lane, Brodie - 1998  ACM   DBLP
39   Detecting computer and network misuse through the production.. - Lindqvist, Phillip - 1999
38   Haystack: An intrusion detection system (context) - Smaha - 1988
37   An application of pattern matching in intrusion detection - Kumar, Spafford - 1994
34   A neural network component for an intrusion detection system (context) - Debar, Becker et al. - 1992  ACM
32   Towards a taxonomy of intrusiondetection systems (context) - Debar, Dacier et al. - 1999
31   Detection of anomalous computer session activity (context) - Vaccaro, Liepins - 1989  DBLP
28   ASAX: Software architecture and rule-based language for univ.. - Habra, Le Charlier et al. - 1992
27   Automated audit trail analysis and intrusion detection: A su.. - Lunt - 1988
22   TCP WRAPPER: Network monitoring (context) - Venema - 1992
20   Detecting unusual program behavior using the statistical com.. (context) - Anderson, Lunt et al. - 1995
19   How to systematically classify computer security intrusions (context) - Lindqvist, Jonsson - 1997
18   An expert system application for network intrusion detection (context) - Jackson, DuBois et al. - 1991
17   The base-rate fallacy and its implications for the difficult.. - Axelsson - 1999
15   Live traffic analysis of TCP/IP gateways (context) - Porras, Valdes - 1998
13   A data mining analysis of RTID alarms (context) - Manganaris, Christensen et al. - 1999  ACM   DBLP
12   Statistical foundations of audit trail analysis for the dete.. (context) - Helman, Liepins - 1993
12   An approach to UNIX security logging - Axelsson, Lindqvist et al. - 1998
12   GrIDS---A graph based intrusion detection system for large n.. (context) - ford, Cheung et al. - 1996
11   Architecture design of a scalable intrusion detection system.. - Jou, Gong et al. - 1997
10   A summary of computer misuse techniques (context) - Neumann, Parker - 1989
9   IDIOT--- Users Guide - Crosbie, Dole et al. - 1996
7   Cooperating security managers: Distributed intrusion detecti.. (context) - White, Pooch - 1996
6   The computer watch data reduction tool (context) - Dowel, Ramstedt - 1990
6   distributed intrusion detection system) prototype (context) - Snapp, Smaha et al. - 1992
5   Dealing with complexity---An introduction to the theory and .. (context) - Flood, Carson - 1993
4   Intrusion detection: A survey (context) - Esmaili, Safavi et al. - 1995
2   A software architechture to support misuse intrusion detecti.. (context) - Kumar, Spafford - 1995



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://www.ce.chalmers.se/staff/sax/):   More
An Approach to UNIX Security Logging - Axelsson, Lindqvist, Gustafson.. (1998)   (Correct)
A Comparison of the Security of Windows NT and UNIX - Hedbom, Lindskog, Axelsson, .. (1998)   (Correct)
On a Difficulty of Intrusion Detection - Axelsson (1999)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC