Intrusion detection techniques and approaches

Theuns Verwoerd,Ray Hunt
DOI: https://doi.org/10.1016/s0140-3664(02)00037-3
IF: 5.047
2002-09-01
Computer Communications
Abstract:Recent security incidents and analysis have demonstrated that manual response to such attacks is no longer feasible. Intrusion detection systems (IDS) offer techniques for modelling and recognising normal and abusive system behaviour. Such methodologies include statistical models, immune system approaches, protocol verification, file and taint checking, neural networks, whitelisting, expression matching, state transition analysis, dedicated languages, genetic algorithms and burglar alarms. This paper describes these techniques including an IDS architectural outline and an analysis of IDS probe techniques finishing with a summary of associated technologies.
computer science, information systems,telecommunications,engineering, electrical & electronic
What problem does this paper attempt to address?