Extracting Forensic Explanation from Intrusion Alerts.
Bon SyNegmat MullodzhanovPublished in: DMIN (2006)
Keyphrases
- intrusion detection system
- intrusion detection
- alert correlation
- network security
- attack scenarios
- decision support
- anomaly detection
- computer networks
- digital forensics
- network intrusion detection
- artificial intelligence
- databases
- attack graph
- generating explanations
- counter intuitive
- forensic analysis
- database
- cost based abduction
- automatically extracted
- automatic extraction
- fractal dimension
- network traffic
- unsupervised learning
- logic programs
- database systems
- computer vision
- data sets