作者: XiaoJun Tong , Zhu Wang
DOI: 10.1007/978-3-642-25002-6_23
关键词:
摘要: The existing worm detection system requires high environment and has false alarm rate. So the paper proposed a novel anomaly algorithm prewarning technology of unknown network worms. We detect worms by means multidimensional abnormal method to discover worms, extracts features set analyzing data in leap-style way creates new rules which will be used corresponding case that attacks again. Experiments have proved this can successfully, for later detection. Experiment shown success rate low