Two-layer Intrusions Detection Model Based on System Calls and Network Raw Data
Xiaoqiang Zhang
Abstract
Xiaoqiang Zhang
Abstract
For each single detection measure or model, there are undetectable intrusion types. To overcome this drawback of single-measure anomaly detector, the two-layer intrusion detection model is provided . This kind of intrusion detection model combined the network intrusion detection and system call based intrusion detection technology to detect both known intrusion and novel intrusion. The results show that the two-layer intrusion detection model is more effective and robust.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
For each single detection measure or model, there are undetectable intrusion types. To overcome this drawback of single-measure anomaly detector, the two-layer intrusion detection model is provided . This kind of intrusion detection model combined the network intrusion detection and system call based intrusion detection technology to detect both known intrusion and novel intrusion. The results show that the two-layer intrusion detection model is more effective and robust.
Key concepts: Intrusion detection system, Computer science, Anomaly-based intrusion detection system, Intrusion, Anomaly detection, Measure (data warehouse), Layer (electronics), Intrusion prevention system