A Knowledge-Based Approach To Intrusion Detection Modeling
Loading...
Links to Files
Permanent Link
Author/Creator
Author/Creator ORCID
Date
2012-05-24
Type of Work
Department
Program
Citation of Original Publication
Sumit More, M. Lisa Mathews, Anupam Joshi, and Tim Finin, A Knowledge-Based Approach To Intrusion Detection Modeling, Proceedings of the IEEE Workshop on Semantic Computing and Security, 2012, DOI: 10.1109/SPW.2012.26
Rights
This item is likely protected under Title 17 of the U.S. Copyright Law. Unless on a Creative Commons license, for uses protected by Copyright Law, contact the copyright holder or the author.
© 2012 IEEE
© 2012 IEEE
Abstract
Current state of the art intrusion detection and prevention systems (IDPS) are signature-based systems that detect threats and vulnerabilities by cross-referencing the threat or vulnerability signatures in their databases. These systems are incapable of taking advantage of heterogeneous data sources for analysis of system activities for threat detection. This work presents a situation-aware intrusion detection model that integrates these heterogeneous data sources and build a semantically rich knowledge-base to detect cyber threats/vulnerabilities.