HOME > 상세정보

상세정보

Intrusion detection and correlation : challenges and solutions

Intrusion detection and correlation : challenges and solutions (6회 대출)

자료유형
단행본
개인저자
Kruegel, Christopher , 1976-. Valeur, Fredrik. Vigna, Giovanni.
서명 / 저자사항
Intrusion detection and correlation : challenges and solutions / by Christopher Kruegel, Fredrik Valeur, Giovanni Vigna.
발행사항
New York :   Springer ,   2005.  
형태사항
xiv, 118 p. : ill. ; 24 cm.
총서사항
Advances in information security
ISBN
0387233989 (alk. paper)
서지주기
Includes bibliographical references and index.
일반주제명
Computer networks -- Security measures. Computer security. Electronic countermeasures.
000 01072camuu22003134a 4500
001 000045215669
005 20051223143326
008 040916s2005 nyua b 001 0 eng
010 ▼a 2004059400
020 ▼a 0387233989 (alk. paper)
035 ▼a (KERIS)REF000010764421
040 ▼a DLC ▼c DLC ▼d DLC ▼d 211009
042 ▼a pcc
050 0 0 ▼a TK5105.59 ▼b .K78 2005
082 0 0 ▼a 005.8 ▼2 22
090 ▼a 005.8 ▼b K942i
100 1 ▼a Kruegel, Christopher , ▼d 1976-.
245 1 0 ▼a Intrusion detection and correlation : ▼b challenges and solutions / ▼c by Christopher Kruegel, Fredrik Valeur, Giovanni Vigna.
260 ▼a New York : ▼b Springer , ▼c 2005.
300 ▼a xiv, 118 p. : ▼b ill. ; ▼c 24 cm.
440 0 ▼a Advances in information security
504 ▼a Includes bibliographical references and index.
650 0 ▼a Computer networks ▼x Security measures.
650 0 ▼a Computer security.
650 0 ▼a Electronic countermeasures.
700 1 ▼a Valeur, Fredrik.
700 1 ▼a Vigna, Giovanni.
945 ▼a KINS

소장정보

No. 소장처 청구기호 등록번호 도서상태 반납예정일 예약 서비스
No. 1 소장처 과학도서관/Sci-Info(2층서고)/ 청구기호 005.8 K942i 등록번호 121118805 (6회 대출) 도서상태 대출가능 반납예정일 예약 서비스 B M

컨텐츠정보

책소개

Details how intrusion detection works in network security with comparisons to traditional methods such as firewalls and cryptography

Analyzes the challenges in interpreting and correlating Intrusion Detection alerts



Intrusion Detection and Correlation: Challenges and Solutions presents intrusion detection systems (IDSs) and addresses the problem of managing and correlating the alerts produced. This volume discusses the role of intrusion detection in the realm of network security with comparisons to traditional methods such as firewalls and cryptography.

The Internet is omnipresent and companies have increasingly put critical resources online. This has given rise to the activities of cyber criminals. Virtually all organizations face increasing threats to their networks and the services they provide. Intrusion detection systems (IDSs) take increased pounding for failing to meet the expectations researchers and IDS vendors continually raise. Promises that IDSs are capable of reliably identifying malicious activity in large networks were premature and never tuned into reality.

While virus scanners and firewalls have visible benefits and remain virtually unnoticed during normal operations, the situation is different with intrusion detection sensors. State-of-the-art IDSs produce hundreds or even thousands of alerts every day. Unfortunately, almost all of these alerts are false positives, that is, they are not related to security-relevant incidents.

Intrusion Detection and Correlation: Challenges and Solutions analyzes the challenges in interpreting and combining (i.e., correlating) alerts produced by these systems. In addition, existing academic and commercial systems are classified; their advantage and shortcomings are presented, especially in the case of deployment in large, real-world sites.



New feature

INTRUSION DETECTION AND CORRELATION: Challenges and Solutions presents intrusion detection systems (IDSs) and addresses the problem of managing and correlating the alerts produced.  This volume discusses the role of intrusion detection in the realm of network security with comparisons to traditional methods such as firewalls and cryptography. 

The Internet is omnipresent and companies have increasingly put critical resources online.  This has given rise to the activities of cyber criminals. Virtually all organizations face increasing threats to their networks and the services they provide.  Intrusion detection systems (IDSs) take increased pounding for failing to meet the expectations researchers and IDS vendors continually raise.  Promises that IDSs are capable of reliably identifying malicious activity in large networks were premature and never tuned into reality. 

While virus scanners and firewalls have visible benefits and remain virtually unnoticed during normal operations, the situation is different with intrusion detection sensors.  State-of-the-art IDSs produce hundreds or even thousands of alerts every day.  Unfortunately, almost all of these alerts are false positives, that is, they are not related to security-relevant incidents.

INTRUSION DETECTION AND CORRELATION: Challenges and Solutions analyzes the challenges in interpreting and combining (i.e., correlating) alerts produced by these systems.  In addition, existing academic and commercial systems are classified; their advantage and shortcomings are presented, especially in the case of deployment in large, real-world sites.

INTRUSION DETECTION AND CORRELATION: Challenges and Solutions is designed for a professional audience composed of researchers and practitioners in industry.   This book is also suitable for graduate-level students in computer science.




정보제공 : Aladin

목차

Computer Security and Intrusion Detection.- Alert Correlation.- Alert Collection.- Alert Aggregation and Verification.- High-Level Alert Structures.- Large-Scale Correlation.- Evaluation.- Open Issues.- Conclusions.


정보제공 : Aladin

관련분야 신착자료

Harvard Business Review (2025)