作者: Eleazar Eskin , Salvatore J. Stolfo , Andrew Honig , Andrew Howard
DOI:
关键词: Intrusion detection system 、 Data processing 、 Database 、 Data format 、 Data warehouse 、 Real-time computing 、 Detector 、 Data records 、 Intrusion 、 Computer science 、 Generator (computer programming)
摘要: A system and methods for detecting intrusions in the operation of a computer comprises sensor configured to gather information regarding system, format data record having predetermined format, transmit format. warehouse is receive from store SQL database. detection model generator request records generate an intrusion based on said records, according detector classify real-time as one normal attack model. analysis engine perform processing function records.