首页> 外文会议>6th annual workshop on cyber security and information intelligence research 2010 >A Reference Based Analysis Framework for Analyzing System Call Traces
【24h】

A Reference Based Analysis Framework for Analyzing System Call Traces

机译:基于参考的分析框架,用于分析系统调用跟踪

获取原文
获取原文并翻译 | 示例

摘要

Reference based analysis (RBA) is a novel data mining tool for exploring a test data set with respect to a reference data set. The power of RBA lies in it ability to transform any complex data type, such as symbolic sequences and multi-variate categorical data instances, into a multivariate continuous representation. The transformed representation not only allows visualization of the complex data, which cannot be otherwise visualized in its original form, but also allows enhanced anomaly detection in the transformed feature space. We demonstrate the application of the RBA framework in analyzing system call traces and show how the transformation results in improved intrusion detection performance over state of art data mining based intrusion detection methods developed for system call traces.
机译:基于参考的分析(RBA)是一种新颖的数据挖掘工具,用于针对参考数据集探索测试数据集。 RBA的强大之处在于它能够将任何复杂的数据类型(例如符号序列和多变量分类数据实例)转换为多变量连续表示形式。转换后的表示形式不仅可以可视化复杂数据(否则无法以其原始形式可视化),还可以在转换后的特征空间中增强异常检测功能。我们演示了RBA框架在分析系统调用跟踪中的应用,并展示了该转换如何通过针对系统调用跟踪开发的基于现有数据挖掘技术的入侵检测方法,提高了入侵检测性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号