Intrusion Detection and Correlation : Challenges and Solutions / by Christopher Kruegel, Fredrik Valeur, Giovanni Vigna
(Advances in Information Security. ISSN:25122193 ; 14)
データ種別 | 電子ブック |
---|---|
版 | 1st ed. 2005. |
出版者 | (New York, NY : Springer US : Imprint: Springer) |
出版年 | 2005 |
大きさ | XIV, 118 p : online resource |
著者標目 | *Kruegel, Christopher author Valeur, Fredrik author Vigna, Giovanni author SpringerLink (Online service) |
書誌詳細を非表示
一般注記 | Computer Security and Intrusion Detection -- Alert Correlation -- Alert Collection -- Alert Aggregation and Verification -- High-Level Alert Structures -- Large-Scale Correlation -- Evaluation -- Open Issues -- Conclusions INTRUSION DETECTION AND CORRELATION: Challenges and Solutions presents intrusion detection systems (IDSs) and addresses the problem of managing and correlating the alerts produced. This volume discusses the role of intrusion detection in the realm of network security with comparisons to traditional methods such as firewalls and cryptography. The Internet is omnipresent and companies have increasingly put critical resources online. This has given rise to the activities of cyber criminals. Virtually all organizations face increasing threats to their networks and the services they provide. Intrusion detection systems (IDSs) take increased pounding for failing to meet the expectations researchers and IDS vendors continually raise. Promises that IDSs are capable of reliably identifying malicious activity in large networks were premature and never tuned into reality. While virus scanners and firewalls have visible benefits and remain virtually unnoticed during normal operations, the situation is different with intrusion detection sensors. State-of-the-art IDSs produce hundreds or even thousands of alerts every day. Unfortunately, almost all of these alerts are false positives, that is, they are not related to security-relevant incidents. INTRUSION DETECTION AND CORRELATION: Challenges and Solutions analyzes the challenges in interpreting and combining (i.e., correlating) alerts produced by these systems. In addition, existing academic and commercial systems are classified; their advantage and shortcomings are presented, especially in the case of deployment in large, real-world sites. INTRUSION DETECTION AND CORRELATION: Challenges and Solutions is designed for a professional audience composed of researchers and practitioners in industry. This book is also suitable for graduate-level students in computer science HTTP:URL=https://doi.org/10.1007/b101493 |
---|---|
件 名 | LCSH:Data structures (Computer science) LCSH:Information theory LCSH:Cryptography LCSH:Data encryption (Computer science) LCSH:Computer networks LCSH:Application software LCSH:Electronic commerce LCSH:Coding theory FREE:Data Structures and Information Theory FREE:Cryptology FREE:Computer Communication Networks FREE:Computer and Information Systems Applications FREE:e-Commerce and e-Business FREE:Coding and Information Theory |
分 類 | LCC:QA76.9.D35 LCC:Q350-390 DC23:005.73 DC23:003.54 |
書誌ID | EB00002729 |
ISBN | 9780387233994 |
類似資料
この資料の利用統計
このページへのアクセス回数:2回
※2019年3月27日以降
全貸出数:0回
(1年以内の貸出:0回)
※2019年3月27日以降