See this document in CiteSeerX!

Cards: A Distributed System For Detecting Coordinated Attacks (2000)  (Make Corrections)  (7 citations)
Jiahai Yang, Peng Ning, X. Sean Wang, Sushil Jajodia
SEC



  Home/Search   Context   Related

 
View or download:
ncsu.edu/faculty/ning/pubs...sec2000.ps
gmu.edu/faculty/xywang/pu...sec2000.pdf
ncsu.edu/~pning/pubs/sec2000.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  ncsu.edu/faculty/ning/vitae (more)
Homepages:  P.Ning  X.Wang
  S.Jajodia  

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: A major research problem in intrusion detection is the efficient Detection of coordinated attacks over large networks. Issues to be resolved include determining what data should be collected, which portion of the data should be analyzed, where the analysis of the data should take place, and how to correlate multi-source information. This paper proposes the architecture of a Coordinated Attack Response (Update)

Context of citations to this paper:   More

.... are based on the formal model of [10] An architecture for detecting coordinated attacks using predefined queries was also proposed in [14], where queries (which we also call detection tasks) are automatically generated from the attack descriptions and different IDR...

...as mobile agents. But mobile code comes with its own problems namely security concerns and restricted execution environments. CARDS [17] adopts an approach of generating and distributing detection tasks among monitors to cooperatively detect attacks. Detection tasks...

Cited by:   More
A Multiagent Approach to Outbound Intrusion Detection - Mandujano (2004)   (Correct)
On The Feasibility of Distributed Intrusion Detection - Columbia University Dnad (2004)   (Correct)
Using Internal Sensors For Computer Intrusion Detection - Zamboni (2001)   (Correct)

Active bibliography (related documents):   More   All
0.5:   Designing a Global Name Service - Lampson (1986)   (Correct)
0.4:   Abstraction-based Intrusion Detection in Distributed.. - Ning, Jajodia, Wang (2001)   (Correct)
0.2:   Learning Program Behavior Profiles for Intrusion Detection - Ghosh, Schwartzbard, Schatz (1999)   (Correct)

Similar documents based on text:   More   All
0.6:   Discovering Calendar-based Temporal Association Rules - Li, Ning, Wang, Jajodia (2001)   (Correct)
0.5:   Abstraction-Based Misuse Detection: High-Level.. - Lin, Wang, Jajodia (1998)   (Correct)
0.5:   Generating Market Basket Data with Temporal Information - Li, Ning, Wang, Jajodia (2001)   (Correct)

Related documents from co-citation:   More   All
6:   web page httpwww (context) - web, http et al.
5:   Intrusion detection using autonomous agents (context) - Spafford, Zamboni - 2000
5:   A Pattern Matching Model for Misuse Intrusion Detection - Kumar, Spafford - 1994

BibTeX entry:   (Update)

J. Yang, P. Ning, X. S. Wang, and S. Jajodia. CARDS: A distributed system for detecting coordinated attacks. In Sihan Qing and J. H. P. Elof, editors, Proceedings of IFIP TC11 Sixteenth Annual Working Conference on Information Security (SEC 2000), pages 171--180. Kluwer Academic Publishers, August http://citeseer.ist.psu.edu/yang00cards.html   More

@inproceedings{ yang00cards,
    author = "Jiahai Yang and Peng Ning and Xiaoyang Sean Wang and Sushil Jajodia",
    title = "{CARDS}: A Distributed System for Detecting Coordinated Attacks",
    booktitle = "{SEC}",
    pages = "171-180",
    year = "2000",
    url = "citeseer.ist.psu.edu/yang00cards.html" }
Citations (may not include all citations):
132   EMERALD: Event Monitoring Enabling Response to Anomalous Liv.. - Porras, Neumann - 1997
121   An Intrusion-Detection Model (context) - Denning
121   Network Intrusion Detection (context) - Mukherjee, Heberlein et al. - 1994
63   An Architecture for Intrusion Detection using Autonomous Age.. - Balasubramaniyan - 1998
41   The SRI IDES Statistical Anomaly Detector (context) - Javitz, Valdez - 1991
38   Haystack: An Intrusion Detection System (context) - Smaha - 1988
34   NetSTAT: A Network-based Intrusion Detection Approach - Vigna, Kemmerer - 1998
22   Abstraction-based misuse detection: High-level specification.. - Lin, Wang et al. - 1998
21   Distributed Intrusion Detection System) - Motivation (context) - Snapp, Brentano - 1991
21   Detecting Anomalous and Unknown Intrusions Against Programs - Ghosh, Wanken et al. - 1998
16   Network Intrusion Detection: An Analyst's Handbook (context) - Northcutt - 1999
7   GrIDS - A Graph Based Intrusion detection System for Large N.. - Staniford-Chen - 1996
6   A Prototype Real-time Intrusion-detection System (context) - Lunt, Jagannathan - 1988
2   IEEE Symposium on Security and Privacy (context) - Heberlein, Security - 1990
1   A Scalable Signature-based Model for Detecting Coordinated A.. (context) - Ning, Jajodia et al. - 2000



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://www.csc.ncsu.edu/faculty/ning/vitae.html):   More
Abstraction-based Intrusion Detection in Distributed.. - Ning, Jajodia, Wang (2001)   (Correct)
Discovering Calendar-based Temporal Association Rules - Li, Ning, Wang, Jajodia (2001)   (Correct)
An Algebraic Representation of Calendars - Ning, Wang, Jajodia (2001)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC