Intrusion Detection and Correlation Intrusion Detection and Correlation
Advances in Information Security

Intrusion Detection and Correlation

Challenges and Solutions

Christopher Kruegel والمزيد
    • ‏129٫99 US$
    • ‏129٫99 US$

وصف الناشر

INTRUSION DETECTION AND CORRELATION: Challenges and Solutions presents intrusion detection systems (IDSs) and addresses the problem of managing and correlating the alerts produced.  This volume discusses the role of intrusion detection in the realm of network security with comparisons to traditional methods such as firewalls and cryptography. 


The Internet is omnipresent and companies have increasingly put critical resources online.  This has given rise to the activities of cyber criminals. Virtually all organizations face increasing threats to their networks and the services they provide.  Intrusion detection systems (IDSs) take increased pounding for failing to meet the expectations researchers and IDS vendors continually raise.  Promises that IDSs are capable of reliably identifying malicious activity in large networks were premature and never tuned into reality. 

While virus scanners and firewalls have visible benefits and remain virtually unnoticed during normal operations, the situation is different with intrusion detection sensors.  State-of-the-art IDSs produce hundreds or even thousands of alerts every day.  Unfortunately, almost all of these alerts are false positives, that is, they are not related to security-relevant incidents.


INTRUSION DETECTION AND CORRELATION: Challenges and Solutions analyzes the challenges in interpreting and combining (i.e., correlating) alerts produced by these systems.  In addition, existing academic and commercial systems are classified; their advantage and shortcomings are presented, especially in the case of deployment in large, real-world sites.


INTRUSION DETECTION AND CORRELATION: Challenges and Solutions is designed for a professional audience composed of researchers and practitioners in industry.   This book is also suitable for graduate-level students in computer science.

النوع
كمبيوتر وإنترنت
تاريخ النشر
٢٠٠٥
٣٠ ديسمبر
اللغة
EN
الإنجليزية
عدد الصفحات
١٣٢
الناشر
Springer US
البائع
Springer Nature B.V.
الحجم
١٫١
‫م.ب.‬
Intelligent Security Systems Intelligent Security Systems
٢٠٢١
Collaborative Financial Infrastructure Protection Collaborative Financial Infrastructure Protection
٢٠١٢
Detection of Intrusions and Malware, and Vulnerability Assessment Detection of Intrusions and Malware, and Vulnerability Assessment
٢٠٠٩
DYNAMICALLY ENABLED CYBER DEFENSE DYNAMICALLY ENABLED CYBER DEFENSE
٢٠٢١
Computer System and Network Security Computer System and Network Security
٢٠١٧
Research in Attacks, Intrusions, and Defenses Research in Attacks, Intrusions, and Defenses
٢٠١٥
Einführung in die Technische Informatik Einführung in die Technische Informatik
٢٠٠٦
Recent Advances in Intrusion Detection Recent Advances in Intrusion Detection
٢٠٠٧
Identifying Malicious Code Through Reverse Engineering Identifying Malicious Code Through Reverse Engineering
٢٠٠٩
Cyber-security of SCADA and Other Industrial Control Systems Cyber-security of SCADA and Other Industrial Control Systems
٢٠١٦
Security for Telecommunications Networks Security for Telecommunications Networks
٢٠٠٨
Data Warehousing and Data Mining Techniques for Cyber Security Data Warehousing and Data Mining Techniques for Cyber Security
٢٠٠٧
Cyber Defense and Situational Awareness Cyber Defense and Situational Awareness
٢٠١٥
Network Security Policies and Procedures Network Security Policies and Procedures
٢٠٠٧