(Enter summary)
Abstract: : The Intrusion Detection (ID) community has developed numerous proposals for languages with which to describe signatures of attacks on computers and networks. By and large, these languages provide means for describing sequences of specific events indicative of attacks through their presence or absence in the history of some computational system. This note argues from examples that meeting the needs of information warfare requires significantly extending the expressive capabilities of attack... (Update)
Cited by: More
Intrusion Detection: A Bibliography - Mé, Michel (2001)
(Correct)
Similar documents (at the sentence level):
27.2%: Event Recognition Beyond Signature and Anomaly - Doyle, Kohane, Long, Shrobe.. (2001)
(Correct)
5.4%: Active Trust Management for Autonomous Adaptive Survivable .. - Shrobe, Doyle, Szolovits (2000)
(Correct)
Active bibliography (related documents): More All
0.1: Adaptive Knowledge-Based Monitoring for Information.. - Doyle, Kohane, Long..
(Correct)
0.1: Agile Monitoring for Cyber Defense - Doyle, Kohane, Long, Shrobe.. (2001)
(Correct)
0.1: Guardian Angel: Patient-Centered Health Information.. - Szolovits, Doyle.. (1994)
(Correct)
Similar documents based on text: More All
0.0: Methodological Simplicity in Expert System Construction - The Case .. - Doyle (1983)
(Correct)
0.0: Intrusion Confinement By Isolation In Information Systems - Liu, Jajodia, McCollum (2000)
(Correct)
0.0: Towards Trapping Wily Intruders in the Large - Mansfield, Ohta, Takei, Kato.. (1999)
(Correct)
Related documents from co-citation: More All
2: Intrusion Connement by Isolation in Information Systems (context) - Liu, Jajodia et al. - 1999
2: PNrule: A New Framework for Learning Classier Models in Data Mining (context) - Agarwal, Joshi - 2000
2: Integrating data mining techniques with intrusion detection (context) - Mukkamala, Gagnon et al. - 1999
BibTeX entry: (Update)
Jon Doyle, H. S. and Szolovits, P. (2000). On widening the scope of attack recognition languages. http://www.medg.lcs.mit.edu/projects/maita/documents/cc2/trends/examples. pdf. http://citeseer.ist.psu.edu/doyle00widening.html More
@unpublished{ doyle00widening,
author = "Jon Doyle and Howard Shrobe and Peter Szolovits",
title = "On widening the scope of attack recognition languages",
text = "Jon Doyle, H. S. and Szolovits, P. (2000). On widening the scope of attack
recognition languages. http://www.medg.lcs.mit.edu/projects/maita/documents/cc2/trends/examples.
pdf.",
year = "2000",
note = "Available at \url{http://medg.lcs.mit.edu/doyle/publications/}",
url = "citeseer.ist.psu.edu/doyle00widening.html" }
Citations (may not include all citations):
1044
Maintaining Knowledge About Temporal Intervals (context) - Allen - 1983
32
STATL: An Attack Language for State-based Intrusion Detectio..
- Eckmann, Vigna et al. - 2000 DBLP
23
Automated trend detection with alternate temporal hypotheses (context) - Haimowitz, Kohane - 1993 DBLP
7
Encoding patterns of growth to automate detection and diagno.. (context) - Kohane, Haimowitz - 1993
4
Some representational limitations of the Common Intrusion Sp.. (context) - Doyle - 1999
Documents on the same site (http://www.medg.lcs.mit.edu/doyle/publications/): More
Preferential Semantics for Goals - Wellman, Doyle (1991)
(Correct)
Similarity, Conservatism, and Rationality - Doyle (1988)
(Correct)
Rational Belief Revision - Doyle (1991)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC