Processing intrusion detection alert aggregates with time series modeling.
Jouni ViinikkaHervé DebarLudovic MéAnssi LehikoinenMika P. TarvainenPublished in: Inf. Fusion (2009)
Keyphrases
- intrusion detection
- alert correlation
- intrusion detection system
- anomaly detection
- network intrusion detection
- network security
- network traffic
- data mining
- computer security
- false positives and false negatives
- detecting anomalous
- network intrusion
- high detection rate
- fraud detection
- artificial immune
- cyber security
- network traffic data
- databases
- information security
- data processing
- data streams
- computer networks
- normal behavior
- pairwise
- data analysis
- object recognition
- network intrusions
- intrusion prevention
- distributed intrusion detection