See this document in CiteSeerX!

A High-Performance Network Intrusion Detection System (1999)  (Make Corrections)  (19 citations)
R. Sekar, Y. Guang, S. Verma, T. Shanbhag
ACM Conference on Computer and Communications Security



  Home/Search   Context   Related

 
View or download:
sunysb.edu/sekar/papers/ccs99.ps
sunysb.edu/seclab/pubs/paper...ccs99.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  sunysb.edu/ccs/publications (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: In this paper we present a new approach for network intrusion detection based on concise specifications that characterize normal and abnormal network packet sequences. Our specification language is geared for a robust network intrusion detection by enforcing a strict type discipline via a combination of static and dynamic type checking. Unlike most previous approaches in network intrusion detection, our approach can easily support new network protocols as information relating to the protocols... (Update)

Cited by:   More
Statistical Analysis of Malformed Packets and Their Origins in.. - Bykova (2002)   (Correct)
An Approach for Detecting Self-Propagating Email Using Anomaly .. - Gupta, Sekar (2003)   (Correct)
Panoptis: Intrusion Detection using a Domain-specific Language - Spinellis, Gritzalis (2002)   (Correct)

Similar documents (at the sentence level):
21.3%:   Building Survivable Systems: An Integrated.. - Bowen, Chee.. (2000)   (Correct)

Active bibliography (related documents):   More   All
0.5:   Specification-based Anomaly Detection: A New.. - Sekar, Gupta.. (2002)   (Correct)
0.4:   Intrusion Detection: A Bibliography - Mé, Michel (2001)   (Correct)
0.4:   Synthesizing Fast Intrusion Prevention/Detection Systems from .. - Sekar, Uppuluri (1999)   (Correct)

Similar documents based on text:   More   All
0.5:   Lightweight Agents For Intrusion Detection - Helmer, Wong, Honavar, Miller (2000)   (Correct)
0.5:   An Artificial Immune Model for Network Intrusion Detection - Kim, Bentley   (Correct)
0.4:   A Method of Tracing Intruders by Use of Mobile Agents - Asaka, Okazawa, TAGUCHI, GOTO (1999)   (Correct)

Related documents from co-citation:   More   All
9:   Synthesizing Fast Intrusion PreventionDetection System from High Level Specifica.. - Uppuluri, Intrusion et al. - 1999
9:   Bro: A System for Detecting Network Intruders in Real-Time - Paxson - 1998
7:   Computer immunology - Forrest, Hofmeyr et al. - 1996

BibTeX entry:   (Update)

R. Sekar, Y. Guang, S. Verma, and T. Shanbhag. A High-Performance Network Intrusion Detection System. In Proceedings of the 6th ACM Conference on Computer and Communications Security, pages 8-17, Nov. 2-4, 1999. http://citeseer.ist.psu.edu/sekar99highperformance.html   More

@inproceedings{ sekar99highperformance,
    author = "R. Sekar and Y. Guang and S. Verma and T. Shanbhag",
    title = "A High-Performance Network Intrusion Detection System",
    booktitle = "{ACM} Conference on Computer and Communications Security",
    pages = "8-17",
    year = "1999",
    url = "citeseer.ist.psu.edu/sekar99highperformance.html" }
Citations (may not include all citations):
299   The BSD Packet Filter: A New Architecture for User-level Pac.. - McCanne, Jacobson - 1992
131   An Event-Based Architecture Definition Language - Luckham, Vera - 1995
123   Bro: A System for Detecting Network Intruders in Real-Time - Paxson - 1998
121   An Intrusion Detection Model (context) - Denning - 1987
121   Network Intrusion Detection (context) - Mukherjee, Heberlein et al. - 1994
74   Computer Immunology - Forrest, Hofmeyr et al. - 1997
63   Next-generation Intrusion Detection Expert System - Anderson, Lunt et al. - 1995
56   A Real-Time Intrusion Detection Expert System (context) - Lunt - 1992
56   A survey of Intrusion Detection Techniques (context) - Lunt - 1993
44   Implementing A Generalized Tool For Network Monitoring - Ranum - 1997
43   NADIR: An Automated System for Detecting Network Intrusion a.. (context) - Hochberg - 1993
35   A Taxonomy of Computer Program Security Flaws (context) - Landwehr, Bull et al. - 1994
34   NetSTAT: A Networkbased Intrusion Detection Approach - Vigna, Kemmerer - 1998
34   Synthesizing Fast Intrusion PreventionDetection System from .. - Sekar, Fast et al.
31   Learning Program Behavior Profiles for Intrusion Detection - Ghosh, Schwartzbard et al. - 1999
12   Task Sequencing Language for Specifying Distributed Ada Syst.. (context) - Luckham, Helmbold et al. - 1987
11   On Preventing Intrusions by Process Behavior Monitoring - Sekar, Bowen et al. - 1999
9   Network Security via Reverse Engineering of TCP Code: Vulner.. - Guha, Mukherjee - 1996
6   Automated Intrusion Detection using NFR: Methods and Experie.. (context) - Lee, Park et al. - 1999
6   EMERALD: Event Monitoring Enabled Responses to Anomalous Liv.. (context) - Porras, Neumann - 1997
6   A real-time intrusion detection system for UNIX (context) - Ilgun - 1993
5   Symposium on Research Security and Privacy (context) - Heberlein, Security - 1990
3   Synthesizing fast intrusion detectionprevention system from .. (context) - Sekar, fast et al. - 1999
2   Webster and M (context) - Graf, Lippmann et al.
2   Workshop on Compilers Support for Systems Software (context) - Chandra, McCann et al.
1   Debugging Distributed Systems Using Event-Based Models of Be.. (context) - Bates - 1995
1   Real-time packet filtering module for network intrusion dete.. (context) - Guang - 1998



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://seclab.cs.sunysb.edu/ccs/publications.htm):   More
Toward Cost-Sensitive Modeling for Intrusion Detection .. - Lee, Fan, Miller.. (2000)   (Correct)
Resource-Constrained Model Checking of Recursive Programs - Basu, Kumar, Pokorny.. (2002)   (Correct)
User-Level Infrastructure for System Call Interposition: A.. - Jain, Sekar (1999)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC