| Julisch, K. and Dacier, M. (2002) Mining Intrusion Detection Alarms for Actionable Knowledge, Proceedings of ACM Conference on Knowledge Discovery and Data Mining, 366-375. |
....in the correlation community directly apply to the challenge of malicious code infection discovery. In particular, a primary emphasis of intrusion report correlation has been the issues of alert inundation and true positive isolation. Examples of false positive reduction have been presented in [6, 8], leveraging such information as a priori assessments of sensor reporting behavior. Numerous groups have explored various approaches to alert aggregation through common attribute analysis [5, 4, 12] and to date such efforts have yielded significant potential for the reduction of alert volumes ....
K. Julisch and M. Dacier, "Mining Intrusion Detection Alarms for Actionable Knowledge," Proc. 8th ACM International Conference on Knowledge Discovery and Data Mining, Edmonton, July 2002.
No context found.
Julisch, K. and Dacier, M. (2002) Mining Intrusion Detection Alarms for Actionable Knowledge, Proceedings of ACM Conference on Knowledge Discovery and Data Mining, 366-375.
No context found.
Klaus Julisch and Marc Dacier. Mining intrusion detection alarms for actionable knowledge. In Proceedings of the ACM SIGKDD International Conference on Knowledge Discovery and Data Mining, pages 366-375, 2002.
No context found.
K. Julisch and M. Dacier. Mining intrusion detection alarms for actionable knowledge. In The 8th ACM International Conference on Knowledge Discovery and Data Mining, July 2002.
No context found.
K. Julisch and M. Dacier. Mining intrusion detection alarms for actionable knowledge. In The 8th ACM International Conference on Knowledge Discovery and Data Mining,July 2002.
No context found.
Klaus Julisch and Marc Dacier. Mining intrusion detection alarms for actionable knowledge. In The 8th ACM International Conference on Knowledge Discovery and Data Mining, July 2002.
No context found.
Julisch, K. & Dacier, M. Mining intrusion detection alarms for actionable knowledge. Proc. of ACM Conf. on Knowledge Discov. and Data Mining, (2002), 366-375.
No context found.
K. Julisch and M. Dacier. Mining Intrusion Detection Alarms for Actionable Knowledge. Proc. of the eighth ACM SIGKDD international conference on Knowledge discovery and data mining. ACM Press, Jul. 2002.
No context found.
Julisch, K. and Dacier, M. (2002) Mining Intrusion Detection Alarms for Actionable Knowledge, Proceedings of ACM Conference on Knowledge Discovery and Data Mining, 366-375.
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC