首页> 美国政府科技报告 >Investigating a Possible Flaw in a Masquerade Detection System
【24h】

Investigating a Possible Flaw in a Masquerade Detection System

机译:研究假面检测系统中可能存在的缺陷

获取原文

摘要

Masquerade detection undertakes to determine whether or not one computer user has impersonated another, typically by detecting significant anomalies in the victim's normal behavior, as represented by a user profile formed from system audit data, command histories, and other information characteristic of individual users. Among the many intrusion/masquerade-detection algorithms in use today is the naive Bayes classifier, which has been observed to perform imperfectly from time to time, as will any detector. This paper investigates the prospect of a naive Bayes flaw that foils the detection of attacks conducted by so-called 'super-masqueraders' whose incursions are consistently undetected across an entire range of victims. It is shown, through a rigorous mathematical exposition and an empirical analysis involving over 13,000 experiments, that the detector harbors a weakness (that could be exploited by an attacker) causing it to err under certain conditions. The paper explores and describes those conditions, and suggests how they can be overcome by fortifying the algorithm with a diverse detection capability.

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号