| W. Lee, K. W. Mok, and S. J. Stolfo. Mining sequential patterns: Techniques, visualization, and applications. submitted for publication, August 1998. |
....service, number of bytes transfered, etc. Table 3 shows examples of connection records. We apply the frequent episodes program to both normal connection data and intrusion data, and study the resulting patterns (we outlined algorithms for visualizing and comparing frequent sequential patterns in [10]) As an example, consider the SYN flood attack shown in Table 3. Here the attacker, using many spoofed source addresses, sends a lot of S0 (only the first SYN packet is sent) connections to a port (http) of the victim host in a very short time span. When using service as the axis feature and ....
W. Lee, K. W. Mok, and S. J. Stolfo. Mining sequential patterns: Techniques, visualization, and applications. submitted for publication, August 1998.
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC