作者: Richard Bejtlich , Thomas Markham , Jeremy Impson , Scott Charles Evans , Eric Steinbrecher
DOI:
关键词:
摘要: A network activity visualization system can include a minimum description length (MDL) based intrusion detection having an MDL grammar database adapted to store plurality of grammars, and pattern matching module match received data set against the grammars by calculating distance from each grammar. The also intelligent icon coupled MDL-based receive distances respective grammar, generate icons on distances. further display so as provide visual indication security.