Title :
Evaluation of Deviating Alerts coming from Behavioral Intrusion Detection System
Author :
Saraydaryan, Jacques ; Legrand, Veronique ; Ubeda, Stephane
Author_Institution :
CITI INSA-Lyon, Lyon
Abstract :
The growth of behavioral intrusion detection solutions raises a new issue. The update of normal references is necessary and determines the flexibility and accuracy of the detection. This paper describes a decision block function used to update a behavioral intrusion detection method. Based on a risk analysis and support vector machines, our approach completes the behavioral anomaly detection using Bayesian modeling based on a global vision of the system approach.
Keywords :
Bayes methods; risk analysis; security of data; support vector machines; Bayesian modeling; behavioral anomaly detection; behavioral intrusion detection system; decision block function; risk analysis; support vector machines; Bayesian methods; Engines; Event detection; Information security; Information systems; Intrusion detection; Machine vision; Monitoring; Risk analysis; Support vector machines;
Conference_Titel :
Emerging Security Information, Systems, and Technologies, 2007. SecureWare 2007. The International Conference on
Conference_Location :
Valencia
Print_ISBN :
978-0-7695-2989-9
DOI :
10.1109/SECUREWARE.2007.4385320