The Second International Conference on Availability, Reliability and Security (ARES'07) Process Profiling Using Frequencies of System Calls Vienna, Austria April 10-April 13 ISBN: 0-7695-2775-2
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ARES.2007.116
In this paper we discuss our research in developing general and systematic method for anomaly detection. The key ideas are to represent normal program behaviour using system call frequencies and to incorporate probabilistic techniques for classification to detect anomalies and intrusions. Using experiments on the sendmail system call data, we demonstrate that we can construct concise and accurate classifiers to detect anomalies. We provide an overview of the approach that we have implemented.
Citation:
Surekha Mariam Varghese, K.Poulose Jacob, "Process Profiling Using Frequencies of System Calls," ares, pp.473-479, The Second International Conference on Availability, Reliability and Security (ARES'07), 2007 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||