See this document in CiteSeerX!

Anomaly Intrusion Detection Systems: Handling Temporal Relations between Events (1999)  (Make Corrections)  (1 citation)
Alexandr Seleznyov, Seppo Puuronen
Recent Advances in Intrusion Detection



  Home/Search   Context   Related

 
View or download:
raidsymposium.org/raid...Seleznyov.pdf
Cached:  PDF   PS.gz  PS  Image  Update  Help

From:  honeypots.net/ids/links (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Lately, many approaches have been developed to discover computer abuse. Some of them use data mining techniques to discover anomalous behavior in audit trail, considering this behavior as an intrusive one. This paper discusses a temporal knowledge representation of users' behavior that is used by data mining tools to construct behavior patterns. These are used to decide whether current behavior follows a certain normal pattern or differs from all known users' behavior patterns. The... (Update)

Cited by:   More
Intrusion Detection: A Bibliography - Mé, Michel (2001)   (Correct)

Active bibliography (related documents):   More   All
0.8:   An Application of Pattern Matching in Intrusion Detection - Kumar, Spafford (1994)   (Correct)
0.6:   A Pattern Matching Model for Misuse Intrusion Detection - Kumar, Spafford (1994)   (Correct)
0.6:   Towards the Scalable Implementation of a User Level.. - Chinchani, Upadhyaya..   (Correct)

Similar documents based on text:   More   All
0.4:   Arbiter Meta-Learning with Dynamic Selection of.. - Tsymbal, Puuronen.. (1999)   (Correct)
0.4:   Arbiter Meta-Learning with Dynamic Selection of Multiple.. - Tsymbal, Puuronen   (Correct)
0.4:   Rational Ordering and Clustering Examples for.. - Puuronen, Terziyan..   (Correct)

Related documents from co-citation:   More   All
2:   Intrusion Connement by Isolation in Information Systems (context) - Liu, Jajodia et al. - 1999
2:   PNrule: A New Framework for Learning Classier Models in Data Mining (context) - Agarwal, Joshi - 2000
2:   Integrating data mining techniques with intrusion detection (context) - Mukkamala, Gagnon et al. - 1999

BibTeX entry:   (Update)

Seleznyov, A. and Puuronen, S. (1999). Anomaly Intrusion Detection Systems: Handling Temporal Relations between Events. Web proceedings of the 2nd International Workshop on Recent Advances in Intrusion Detection (RAID'99), http://www.raidsymposium. org/raid99. http://citeseer.ist.psu.edu/seleznyov99anomaly.html   More

@inproceedings{ seleznyov99anomaly,
    author = "Alexandr Seleznyov and Seppo Puuronen",
    title = "Anomaly Intrusion Detection Systems: Handling Temporal Relations Between Events",
    booktitle = "Recent Advances in Intrusion Detection",
    year = "1999",
    url = "citeseer.ist.psu.edu/seleznyov99anomaly.html" }
Citations (may not include all citations):
1044   Maintaining knowledge about temporal intervals (context) - Allen - 1983
82   Integrating Metric and Qualitative Temporal Reasoning - Kautz, Ladkin
79   Computer Security Threat Monitoring and Surveillance (context) - Anderson - 1980
65   Actions and Events in Interval Temporal Logic - Allen, Ferguson - 1994
62   The Consensus Glossary of Temporal Database Concepts - Febru.. (context) - Ch, Bhlen et al. - 1998
59   Practical Unix Security (context) - Garfinkel, Spafford - 1991
58   A Pattern Matching Model for Misuse Intrusion Detection - Kumar, Spafford - 1994
48   Classification and Detection of Computer Intrusions - Kumar - 1995
44   Concept acquisition through representational adjustment (context) - Schlimmer - 1987
28   Penetration State Transition Analysis: A Rule-Based Intrusio.. (context) - Porras, Kemmerer - 1992
25   Sequence Matching and Learning in Anomaly Detection for Comp.. - Lane, Brodley - 1998
19   Knowledge based Intrusion Detection (context) - Lunt, Jagannathan et al. - 1989
12   Relation algebra of intervals - Hirsch - 1996
11   A Method To Detect Intrusive Activity in a Networked Environ.. (context) - Heberlein, Levitt et al. - 1991
6   Anomaly Detection: Purpose and Framework (context) - Liepins, Vaccaro - 1989
5   A pattern-oriented intrusiondetection model and its applicat.. (context) - Shieh, Gligor - 1991
3   Tools For Misuse Detection (context) - Smaha - 1993
2   Questions about CMAD (context) - Smaha - 1992
1   Phrack Magazine (context) - Demystified, Exploitation - 1996

Documents on the same site (http://www.honeypots.net/ids/links):   More
Attacks at the Data Link Layer - Marro (2003)   (Correct)
A Data Level Database Inference Detection System - Yip (1998)   (Correct)
An Experience Developing an IDS Stimulator for the.. - Mutz, Vigna, Kemmerer (2003)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC