DocumentCode :
2541867
Title :
Effective event description using trend template language and efficient intrusion detection
Author :
Habib, Md Ahsan ; Dung, Phan Minh
Author_Institution :
Asian Inst. of Technol. (AIT), Pathumthani
fYear :
2007
fDate :
7-10 Oct. 2007
Firstpage :
326
Lastpage :
331
Abstract :
Trend template language, TTL, is considerably a new approach for describing computer intrusion events. Its inherent strength of linguistic constructs could help describe events more effectively which can help detection process overcome limitations of current intrusion detection techniques to detect attack trends. Some researches have been already conducted establishing the strength and possibilities of TTL as an event description language over some traditional approaches. This article goes further with TTL and dissects the possibilities and limitations of TTL and trend detection with practical view point.
Keywords :
computational linguistics; formal languages; security of data; computer intrusion event description; intrusion detection technique; linguistic constructs; trend template language; Computer networks; Computer security; Detectors; Event detection; History; Humans; Intrusion detection; Pattern matching; Protection; Statistics; Intrusion Detection System (IDS); Network based IDS (NIDS); Snort; Trend Detector; Trend Template Language (TTL); Trend Templates (TT);
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Systems, Man and Cybernetics, 2007. ISIC. IEEE International Conference on
Conference_Location :
Montreal, Que.
Print_ISBN :
978-1-4244-0990-7
Electronic_ISBN :
978-1-4244-0991-4
Type :
conf
DOI :
10.1109/ICSMC.2007.4413743
Filename :
4413743
Link To Document :
بازگشت