|
计算机应用研究 2007
Model of Anomaly Detection Based on Danger Theory for IDS
|
Abstract:
The feasibility of danger theory applied into anomaly detection was analyzed by taking into account the deficiencies of current technology in detecting the newly intrusion.Then a novel adaptive anomaly detection system model for IDS,based on danger theory,and interrelated algorithm were proposed,which lead to a decrease in false negative rate and false positive rate.The system is characterized by self-adaptability,self-learning,self-organization,and distribution.