(Enter summary)
Abstract: We have been developing a data mining (i.e., knowledge discovery) framework, MADAM ID, for
Mining Audit Data for Automated Models for Intrusion Detection [LSM98, LSM99b, LSM99a].
The 1998 DARPA Intrusion Detection Evaluation showed that the models produced by MADAM
ID performed comparably well with the best purely knowledge-engineered systems. Although our
data mining techniques have shown great potentials, it is important recognize the critical roles that
domain knowledge, and thus knowledge... (Update)
Cited by: More
Intrusion Detection: A Bibliography - Mé, Michel (2001)
(Correct)
Active bibliography (related documents): More All
0.2: A Data Mining Framework for Constructing Features and Models for.. - Lee (1999)
(Correct)
0.2: A Framework for Constructing Features and Models for Intrusion.. - Lee, Stolfo (2000)
(Correct)
0.1: A Data Mining Framework for Building Intrusion Detection Models - Lee, Stolfo, Mok (1999)
(Correct)
Similar documents based on text: More All
0.3: A Data Mining and CIDF Based Approach for.. - Lee, Nimbalkar.. (2000)
(Correct)
0.3: Mining in a Data-flow Environment: Experience in Network.. - Lee, Stolfo, Mok (1999)
(Correct)
0.3: Toward Cost-Sensitive Modeling for Intrusion Detection .. - Lee, Fan, Miller.. (2000)
(Correct)
Related documents from co-citation: More All
2: Intrusion Connement by Isolation in Information Systems (context) - Liu, Jajodia et al. - 1999
2: PNrule: A New Framework for Learning Classier Models in Data Mining (context) - Agarwal, Joshi - 2000
2: Integrating data mining techniques with intrusion detection (context) - Mukkamala, Gagnon et al. - 1999
BibTeX entry: (Update)
Lee, W. and Stolfo, S. J. (1999). Combining Knowledge Discovery and Knowledge Engineering to Build IDSs. Web proceedings of the 2nd International Workshop on Recent Advances in Intrusion Detection (RAID'99), http://www.raid-symposium.org/raid99. http://citeseer.ist.psu.edu/lee99combining.html More
@inproceedings{ lee99combining,
author = "Wenke Lee and Salvatore J. Stolfo",
title = "Combining Knowledge Discovery and Knowledge Engineering to Build {IDSs}",
booktitle = "Recent Advances in Intrusion Detection",
year = "1999",
url = "citeseer.ist.psu.edu/lee99combining.html" }
Citations (may not include all citations):
921
Mining association rules between sets of items in large data..
- Agrawal, Imielinski et al. - 1993
189
Discovering frequent episodes in sequences (context) - Mannila, Toivonen et al. - 1995
132
EMERALD: Event monitoring enabling responses to anomalous li..
- Porras, Neumann - 1997
123
Bro: A system for detecting network intruders in real-time
- Paxson - 1998
70
A data mining framework for building intrusion detection mod..
- Lee, Stolfo et al. - 1999
59
Toward parallel and distributed learning by meta-learning
- Chan, Stolfo - 1993
59
USTAT: A real-time intrusion detection system for Unix
- Ilgun - 1992
58
available via anonymous ftp to ftp (context) - Jacobson, Leres et al. - 1989
35
Mining audit data to build intrusion detection models
- Lee, Stolfo et al. - 1998
32
A software architecture to support misuse intrusion detectio..
- Kumar, Spafford - 1995
19
Mining in a data-flow environment: Experience in network int..
- Lee, Stolfo et al. - 1999
15
Network flight recorder (context) - Recorder - 1997
Documents on the same site (http://www.raid-symposium.org/raid99/):
Building an Intrusion-Detection System to Detect Suspicious.. - Wespi, Debar (1999)
(Correct)
Session State Transition Based Large Network IDS - Qianli, Xing (1999)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC