Highly Influenced
Detection and Classification of Intrusions and Faults using Sequences of System Calls
@article{Cabrera2001DetectionAC, title={Detection and Classification of Intrusions and Faults using Sequences of System Calls}, author={Jo{\~a}o B. D. Cabrera and Lundy M. Lewis and Raman K. Mehra}, journal={SIGMOD Record}, year={2001}, volume={30}, pages={25-34} }
- Published in SIGMOD Record 2001
DOI:10.1145/604264.604269
This paper investigates the use of sequences of system calls for classifying intrusions and faults induced by privileged processes in Unix. Classification is an essential capability for responding to an anomaly (attack or fault), since it gives the ability to associate appropriate responses to each anomaly type. Previous work using the well known dataset from the University of New Mexico (UNM) has demonstrated the usefulness of monitoring sequences of system calls for detecting anomalies… CONTINUE READING
From This Paper
Figures, tables, and topics from this paper.
Citations
Publications citing this paper.
References
Publications referenced by this paper.
Showing 1-5 of 5 references
Highly Influential
Highly Influential
Highly Influential
Highly Influential
Highly Influential