zeek-osquery: Host-Network Correlation for Advanced Monitoring and Intrusion Detection.
Steffen HaasRobin SommerMathias FischerPublished in: CoRR (2020)
Keyphrases
- intrusion detection
- network traffic
- network intrusion
- network attacks
- intrusion detection system
- alert correlation
- intrusion prevention
- anomaly detection
- network monitoring
- network security
- network intrusion detection
- intrusion detection and prevention
- network traffic data
- computer networks
- artificial immune
- detecting anomalous
- computer security
- high detection rate
- normal behavior
- information security
- network management
- cyber attacks
- fraud detection
- traffic data
- cyber security
- network intrusions
- data mining
- distributed intrusion detection
- worm detection
- ip addresses
- communication networks
- lightweight
- model selection
- data mining techniques
- data warehouse
- information retrieval