(Enter summary)
Abstract: There is currently need for an up-to-date and thorough survey of the research in the eld of computer and network intrusion detection. This paper presents such a survey, with a taxonomy of intrusion detection system features, and a classi- cation of the surveyed systems according to the taxonomy. The conclusion is reached that current research interest should lie in the study of the e ectiveness of intrusion detection and how to handle attacks against the intrusion detection system itself. (Update)
Cited by: More
Applications - Stanley Bielski Of
(Correct)
A Multiagent Approach to Outbound Intrusion Detection - Mandujano (2004)
(Correct)
Outbound Intrusion Detection - Mandujano, Galvan (2004)
(Correct)
Active bibliography (related documents): More All
2.0: Intrusion Detection: A Bibliography - Mé, Michel (2001)
(Correct)
2.0: Intrusion Detection Systems: A Survey and Taxonomy - Axelsson (2000)
(Correct)
0.9: The Base-Rate Fallacy and its Implications for the Difficulty of .. - Axelsson (1999)
(Correct)
Similar documents based on text: More All
0.5: EMERALD: Event Monitoring Enabling Responses to Anomalous.. - Porras, Neumann (1997)
(Correct)
0.3: Curriculum Vitæ - Nilsson
(Correct)
0.2: Combining a Bayesian Classifier with Visualisation.. - Axelsson (2004)
(Correct)
Related documents from co-citation: More All
8: EMERALD: Event Monitoring Enabling Responses to Anomalous Live Disturbances
- Porras, Neumann - 1997
8: and denial of service: Eluding network intrusion detection (context) - Ptacek, Newsham et al. - 1998
7: IEEE Transactions on Software Engineering (context) - Denning, Past - 1980
BibTeX entry: (Update)
Stefan Axelsson. Research in Intrusion-Detection systems: A Survey. Technical Report 98--17, Dept. of Computer Eng. Chalmers Univ. of Tech, SE-412 96 G oteborg, Sweden, December 1998. URL: http://www.ce.chalmers.se/staff/sax. http://citeseer.ist.psu.edu/axelsson98research.html More
@techreport{ axelsson98research,
author = "S. Axelsson",
title = "Research in Intrusion-Detection systems: A Survey",
number = "98--17",
institution = "Department of Computer Engineering, Chalmers
University of Technology",
address = "Goteborg, Sweden",
month = dec,
year = 1998,,
url = "citeseer.ist.psu.edu/axelsson98research.html" }
Citations (may not include all citations):
175
A secure environment for untrusted helper applications
- Goldberg, Wagner et al. - 1996
133
IEEE Transactions on Software Engineering (context) - Denning, model - 1987
132
EMERALD: Event monitoring enabling responses to anomalous li..
- Porras, Neumann - 1997
121
Network intrusion detection (context) - Mukherjee, Heberlein et al. - 1994
105
State transition analysis: A rule-based intrusion detection ..
- Ilgun, Kemmerer et al. - 1995 DBLP
68
A network security monitor (context) - Heberlein, Dias et al. - 1990 DBLP
65
Bro: A system for detecting network intruders in real-time
- Paxon - 1988
63
An architecture for intrusion detection using autonomous age..
- Balasubramaniyan, Garcia-Fernandez et al. - 1998 ACM DBLP
63
Next-generation intrusion-detection expert system
- Anderson, Frivold et al. - 1995
60
Detecting intrusions using system calls: Alternative data mo..
- Warrender, Forrest et al. - 1999 DBLP
59
Execution Monitoring of Security-critical Programs in a Dist.. (context) - Ko - 1996
59
USTAT: A real-time intrusion detection system for UNIX
- Ilgun - 1993
58
A pattern matching model for misuse intrusion detection
- Kumar, Spa - 1994
56
A real-time intrusion-detection expert system (context) - Lunt, Tamaru et al. - 1992
52
Automated detection of vulnerabilities in privileged program..
- Ko, Fink et al. - 1994
51
and denial of service: Eluding network intrusion detection (context) - Ptacek, Newsham et al. - 1998
43
NADIR: An automated system for detecting network intrusion a.. (context) - Hochberg, Jackson et al. - 1993
41
Expert systems in intrusion detection: A case study (context) - Sebring, Shellhouse et al. - 1988
38
Haystack: An intrusion detection system (context) - Smaha - 1988
37
An application of pattern matching in intrusion detection
- Kumar, Spa - 1994
34
A neural network component for an intrusion detection system (context) - Debar, Becker et al. - 1992 ACM
32
Towards a taxonomy of intrusion-detection systems (context) - Debar, Dacier et al. - 1999 ACM DBLP
31
Model-based intrusion detection (context) - Garvey, Lunt - 1991
31
Detection of anomalous computer session activity (context) - Vaccaro, Liepins - 1989 DBLP
28
ASAX: Software architecture and rule-based language for univ..
- Habra, Le Charlier et al. - 1992 DBLP
27
Automated audit trail analysis and intrusion detection: A su..
- Lunt - 1988
22
Testing and evaluating computer intrusion detection systems (context) - Durst, Champion et al. - 1999
22
TCP WRAPPER: Network monitoring (context) - Venema - 1992
20
Detecting unusual program behavior using the statistical com.. (context) - Anderson, Lunt et al. - 1995
19
How to systematically classify computer security intrusions (context) - Lindqvist, Jonsson - 1997
18
An expert system application for network intrusion detection (context) - Jackson, DuBois et al. - 1991
15
A common intrusion detection framework (context) - Kahn, Porras et al. - 1998
12
An approach to UNIX security logging
- Axelsson, Lindqvist et al. - 1998
11
Architecture design of a scalable intrusion detection system..
- Jou, Gong et al. - 1997
7
Cooperating security managers: Distributed intrusion detecti.. (context) - White, Pooch - 1996
6
Classication and Detection of Computer Intrusions (context) - Kumar - 1995
6
The computer watch data reduction tool (context) - Dowel, Ramstedt - 1990
6
A graph based intrusion detection system for large networks (context) - Chen, Cheung et al. - 1996
6
distributed intrusion detection system) prototype (context) - Snapp, Smaha et al. - 1992
4
Building a security monitor with adaptive user work proles (context) - Halme, Kahn - 1988
4
Intrusion detection: A survey (context) - Esmaili, Safavi et al. - 1995
4
A visual mathematical model for intrusion detection
- Vert, Frincke et al. - 1998
3
Designing IDLE: The intrusion data library enterprise (context) - Lindqvist, Moran et al. - 1998
2
Articial intelligence and intrusion detection: Current and f.. (context) - Frank - 1994
2
A software architechture to support misuse intrusion detecti.. (context) - Kumar, Spa - 1995
2
Observations on the Nature of Computer Security Intrusions (context) - Lindqvist - 1996
2
A taxonomy of anti-intrusion techniques (context) - Halme, Bauer - 1995
2
An alternative tool for security audit trails analysis (context) - algorithms - 1998
2
Requirements and model for IDES|A real-time intrusion detect.. (context) - Denning, Neumann - 1985
1
and Eugene Spaord (context) - Crosbie, Dole et al. - 1996
1
Coloured Petri Nets|Basic Concepts (context) - Jensen - 1992 ACM DBLP
1
Processes as les (context) - Killian - 1984
1
Live trac analysis of TCP/IP gateways (context) - Porras, Valdes - 1998
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.ce.chalmers.se/staff/sax/): More
An Approach to UNIX Security Logging - Axelsson, Lindqvist, Gustafson.. (1998)
(Correct)
A Comparison of the Security of Windows NT and UNIX - Hedbom, Lindskog, Axelsson, .. (1998)
(Correct)
Intrusion Detection Systems: A Survey and Taxonomy - Axelsson (2000)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC