Detecting Intruders in Computer Systems
Author
Teresa F. Lunt
Entry type
article
Abstract
This paper describes a real-time intrusion-detection system (IDES) that observes user behavior on a monitored computer system and adaptively learns what is normal for individual users, groups, remote hosts, and the overall system behavior. Observed behavior is flagged as a potential intrusion if it deviates significantly from the expected behavior or if it triggers a rule in the expert-system rule base...
Key alpha
Lunt
Pages
3
Affiliation
SRI International
Publication Date
0000-00-00
Language
English
Location
A hard-copy of this is in the Papers Cabinet

