• DocumentCode
    2541867
  • Title

    Effective event description using trend template language and efficient intrusion detection

  • Author

    Habib, Md Ahsan ; Dung, Phan Minh

  • Author_Institution
    Asian Inst. of Technol. (AIT), Pathumthani
  • fYear
    2007
  • fDate
    7-10 Oct. 2007
  • Firstpage
    326
  • Lastpage
    331
  • Abstract
    Trend template language, TTL, is considerably a new approach for describing computer intrusion events. Its inherent strength of linguistic constructs could help describe events more effectively which can help detection process overcome limitations of current intrusion detection techniques to detect attack trends. Some researches have been already conducted establishing the strength and possibilities of TTL as an event description language over some traditional approaches. This article goes further with TTL and dissects the possibilities and limitations of TTL and trend detection with practical view point.
  • Keywords
    computational linguistics; formal languages; security of data; computer intrusion event description; intrusion detection technique; linguistic constructs; trend template language; Computer networks; Computer security; Detectors; Event detection; History; Humans; Intrusion detection; Pattern matching; Protection; Statistics; Intrusion Detection System (IDS); Network based IDS (NIDS); Snort; Trend Detector; Trend Template Language (TTL); Trend Templates (TT);
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Systems, Man and Cybernetics, 2007. ISIC. IEEE International Conference on
  • Conference_Location
    Montreal, Que.
  • Print_ISBN
    978-1-4244-0990-7
  • Electronic_ISBN
    978-1-4244-0991-4
  • Type

    conf

  • DOI
    10.1109/ICSMC.2007.4413743
  • Filename
    4413743