Network intrusion detection visualization

作者: Richard Bejtlich , Thomas Markham , Jeremy Impson , Scott Charles Evans , Eric Steinbrecher

DOI:

关键词:

摘要: A network activity visualization system can include a minimum description length (MDL) based intrusion detection having an MDL grammar database adapted to store plurality of grammars, and pattern matching module match received data set against the grammars by calculating distance from each grammar. The also intelligent icon coupled MDL-based receive distances respective grammar, generate icons on distances. further display so as provide visual indication security.

参考文章(53)
Lixin Li, James Edward Just, A diversity-based security system and method ,(2007)
Charanjit Jutla, Pau-Chen Cheng, Josyula Rao, Michael Steiner, Suresh Chari, Pankaj Rohatgi, Cost effective incident response ,(2005)
Jung-Chan Na, Johg Ho Ryu, Geon Lyang Kim, Hyun Sook Cho, Seon-Gyoung Sohn, Chi Yoon Jeong, Jonghyun Kim, Beom-Hwan Chang, Apparatus and method for detecting network attack based on visual data analysis ,(2009)
Shachar Ofek, Yaron Gueta, Tracking high-level network transactions ,(2009)
Ramasubramanian Sekar, Specification-based anomaly detection ,(2002)
Sunita Sarawagi, Byron Edward Dom, Soumen Chakrabarti, System and method for mining surprising temporal patterns ,(1998)
Irad Ben-Gal, Gail Morag, Gonen Zinger, Armin Shmilovici, Stochastic modeling of time distributed sequences ,(2002)
Katherine Butchart, Mark Preston, Derek M. Dempsey, Vector difference measures for data classifiers ,(2002)