Automatic attack plan recognition from intrusion alerts.
Li WangZhitang LiJie MaYang-ming MaAifang ZhangPublished in: SNPD (3) (2007)
Keyphrases
- plan recognition
- alert correlation
- intrusion detection
- intrusion detection system
- attack scenarios
- recognition process
- attack graph
- plan library
- plan generation
- denial of service attacks
- handling uncertainty
- attack detection
- network intrusion
- anomaly detection
- malicious users
- network security
- decision theoretic
- human computer interaction
- smart home
- plan execution
- knowledge base
- machine learning
- network traffic
- fuzzy logic
- data mining