期刊文献+

基于系统调用顺序和频度特性的入侵检测模型 被引量:1

A New Intrusion Detection Model Based on Combination of Order and Frequency Characters of System Calls
下载PDF
导出
摘要 提出了一种将系统调用的顺序特性和频度特性相接合来构建入侵检测模型(COFIDS模型)的新方法,该模型采用kNN(k-NearestNeighbor Classifier)算法实现入侵检测,并利用一种改进的相似因子,来增加系统调用序列间相似度的差别,减少了识别误差,提高了检测率,降低了入侵检测的误报率。实验表明,COFIDS还具有较强的抗噪声干扰的能力。 A new intrusion detection scheme based on the combination of the order and frequency characters of system cails (COFIDS) is proposed. This paper applies a text category algorithm (k-Nearest Neighbor Classifier, kNN) to the proposed intrusion detection scheme. In order to improve the intrusion detection rate, a similarity enhancement factor (SEF) is also presented. The preliminary experimental results demonstrate that the proposed COFIDS can provide obvious improvement in intrusion detection ability. The experiments with COFIDS also show that the proposed scheme has higher ability against to noise in the training data and to intrusion detection false positive rate.
出处 《计算机工程》 EI CAS CSCD 北大核心 2006年第13期18-19,43,共3页 Computer Engineering
基金 国家"863"计划基金资助项目(2002AA142010)
关键词 入侵检测 系统调用 KNN算法 Intrusion detection System call kNN algorithm
  • 相关文献

参考文献6

  • 1Liao Y,Vemuri V R.Use of K-Nearest Neighbor Classifier for Intrusion Detection[J].Computers & Security,2002,21(5).
  • 2Sanjay R,Pujari A K,Gulati V P,et al.Intrusion Detection Using Text Processing Techniques with a Binary-weighted Cosine Metric[Z].http://www.cs.ucdavis.edu/~vemuri/publications.htm.
  • 3Ye N,Li X,Chen Q,et al.Probabilistic Techniques for Intrusion Detection Based on Computer Audit Data[J].IEEE Trans.SMC-A,2001,31(4):266-274.
  • 4Forrest S,Hofmeyr S A,Somayaji A,et al.A Sense of Self for Unix Processes[C].Proceedings of the IEEE Symposium on Security and Privacy,Los Alamitos,CA,1996.
  • 5Lee W,Stolfo S,Chan P.Learning Patterns from Unix Process Execution Traces from Intrusion Detection[C].AAAI Workshop:AI Approaches to Fraud Detection and Risk Management,1997-06.
  • 6DARPA Data Set[Z].http://www.ll.mit.edu/IST-ideval data 1998/1998_data_index.html,1998.

同被引文献7

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部