thc.org:/root/docs/intrusion_detection/hids/

Papers covering host-based intrusion detection research

  Name Last Modified Size Inode
- ../    03-Feb-2012 20:15:01    4k    0x32001325

Return to parent directory

- A-Real-Time-IDS-based-on-Learning.pdf    01-Nov-2006 16:23:01    285k    0xc0a10c53

A Real-Time Intrusion Detection System based on Learning Program Behavior

- An-Application-of-Machine-Learning-to-Anomaly-Detection.pdf    01-Nov-2006 16:23:01    125k    0x0daea3b3

An Application of Machine Learning to Anomaly Detection

- An-Immunological-Approach-to-Change-Detection-Analysis.pdf    01-Nov-2006 16:23:01    438k    0xb77080b3

An Immunological Approach to Change Detection: Algorithms, Analysis and Implications

- An-Immunological-Approach-to-Change-Detection-Theory.pdf    01-Nov-2006 16:23:01    56k    0x6e7c4063

An Immunological Approach to Change Detection: Theoretical Results

- Automated-Response-Using-System-Call-Delays.pdf    01-Nov-2006 16:23:01    104k    0x2f61ea47

Automated Response Using System-Call Delays

- Automating Mimicry Attacks Using Static Binary Analysis.pdf    01-Nov-2006 16:23:01    352k    0x36141f3d

Automating Mimicry Attacks Using Static Binary Analysis

- Detecting-Intrusions-using-System-Calls.pdf    01-Nov-2006 16:23:01    184k    0x96b4e84c

Detecting Intrusions using System Calls: Alternative Data Models

- Efficient ID using Automaton Inlining.pdf    01-Nov-2006 16:23:01    381k    0xa7e851c3

Efficient Intrusion Detection using Automaton Inlining

- Finding the Vocabulary of Program Behavior Data for Anomaly Detection.pdf    01-Nov-2006 16:23:01    128k    0xdbf3b154

Finding the Vocabulary of Program Behavior Data for Anomaly Detection

- Information-Theoretic-Measures-For-Anomaly-Detection.pdf    01-Nov-2006 16:23:01    306k    0x3cd566ec

Information-Theoretic Measures For Anomaly Detection

- Intrusion-Detection-using-Sequences-of-System-Calls.pdf    01-Nov-2006 16:23:01    145k    0x9dbb29ad

Intrusion Detection using Sequences of System Calls

- Learning to Detect Malicious Executables in the Wild.pdf    01-Nov-2006 16:23:01    212k    0xa62832a9

Learning to Detect Malicious Executables in the Wild

- Learning-Patterns-from-Unix-Process-Execution-Traces.pdf    01-Nov-2006 16:23:01    63k    0x2055090b

Learning Patterns from Unix Process Execution Traces for Intrusion Detection

- Learning-Program-Behaviour.pdf    01-Nov-2006 16:23:01    216k    0xc943347e

Learning Program Behaviour Profiles for Intrusion Detection

- Modeling-System-Calls-for-IDS.pdf    01-Nov-2006 16:23:01    125k    0xc5101460

Modeling System Calls for Intrusion Detection with Dynamic Window Sizes

- On gray-box program tracking for anomaly detection.pdf    01-Nov-2006 16:23:01    254k    0x15231fad

On gray-box program tracking for anomaly detection

- On the Detection of Anomalous System Call Arguments.pdf    01-Nov-2006 16:23:01    241k    0x04036132

On the Detection of Anomalous System Call Arguments

- STATL-An-Attack-Language-for-State-based-ID.pdf    01-Nov-2006 16:23:01    503k    0xcfee492f

STATL - An Attack Language for State based Intrusion Detection

- Semantics-Aware Malware Detection.pdf    01-Nov-2006 16:23:01    280k    0x4bc627fe

Semantics-Aware Malware Detection

- Sequence-Matching-and-Learning-in-Anomaly-Detection-for-Computer-Security.pdf    01-Nov-2006 16:23:01    149k    0xe2633fa6

Sequence Matching and Learning in Anomaly Detection for Computer Security

- Seurat A Pointillist Approach to Anomaly Detection.pdf    01-Nov-2006 16:23:01    718k    0x8fdb07d2

Seurat: A Pointillist Approach to Anomaly Detection

- Temporal-Sequence-Learning-and-Data-Reduction-for-Anomaly-Detection.pdf    01-Nov-2006 16:23:01    281k    0x7e2b2093

Temporal Sequence Learning and Data Reduction for Anomaly Detection

- Toward Stealthy Malware Detection.pdf    01-Nov-2006 16:23:01    862k    0x4f184608

Toward Stealthy Malware Detection

- Two-state-based-approaches-to-Program-based-Anomaly-Detection.pdf    01-Nov-2006 16:23:01    132k    0xf017f199

Two state-based approaches to Program-based Anomaly Detection

- USTAT-Real-Time-IDS-for-Unix.pdf    01-Nov-2006 16:23:01    15M    0x16b49145

USTAT - Real Time Intrusion Detection for Unix

- Undermining Anomaly-based IDS.pdf    01-Nov-2006 16:23:02    157k    0x0fb21bf7

Undermining an Anomaly-based Intrusion Detection System Using Common Exploits

- Using-Program-Behavior.pdf    01-Nov-2006 16:23:02    180k    0xfb34c81f

Using Program Behavior for Intrusion Detection