Research on alert correlation method based on alert confidence in multi-IDS environment
To overcome the shortcoming of current alert correlation methods which didn’t consider the confidence of IDS,an alert correlation method based on alerts confidence using the evidence theory was presented.Each alert was regarded as a piece of evidence of a network attack.Then multiple pieces of evide...
Saved in:
Main Authors: | MEI Hai-bin, GONG Jian |
---|---|
Format: | Article |
Language: | zho |
Published: |
Editorial Department of Journal on Communications
2011-01-01
|
Series: | Tongxin xuebao |
Subjects: | |
Online Access: | http://www.joconline.com.cn/zh/article/74419639/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
-
Research on discovering multi-step attack patterns based on clustering IDS alert sequences
by: MEI Hai-bin1, et al.
Published: (2011-01-01) -
IDS alert clustering algorithm based on chaotic particle swarm optimization
by: Xiao-bo XU, et al.
Published: (2013-03-01) -
New data fusion model of intrusion detection——IDSFP
by: TIAN Jun-feng, et al.
Published: (2006-01-01) -
Alert processing based on attack graph and multi-source analyzing
by: Wei-xin LIU, et al.
Published: (2015-09-01) -
Using fuzzy clustering to reconstruct alert correlation graph of intrusion detection
by: MA Lin-ru1, et al.
Published: (2006-01-01)