University of Maryland LibrariesDigital Repository at the University of Maryland
    • Login
    View Item 
    •   DRUM
    • A. James Clark School of Engineering
    • Institute for Systems Research Technical Reports
    • View Item
    •   DRUM
    • A. James Clark School of Engineering
    • Institute for Systems Research Technical Reports
    • View Item
    JavaScript is disabled for your browser. Some features of this site may not work without it.

    Finite Automata Models for Anomaly Detection

    Thumbnail
    View/Open
    TR_2002-42.pdf (121.5Kb)
    No. of downloads: 449

    Date
    2002
    Author
    Ramezani, Vahid
    Yang, Shah-An
    Baras, John S.
    Advisor
    Baras, John S.
    Metadata
    Show full item record
    Abstract
    A fundamental problem in intrusion detection is the fusion of dependent information sequences. In this paper, we consider the fusion of twosuch sequences, namely the sequences of system calls and thevalues of the instruction pointer. We introduce FAAD, a finite automatonrepresentation defined for the product alphabet of the two sequences wheredependencies are implicitly taken into account by a matchingprocedure. Our learning algorithm captures these dependencies through the application of certain parameterized functions. Through thechoice of thresholds and inner product structures, we areable to produce a compact representation of thenormal behavior of program.
    URI
    http://hdl.handle.net/1903/6275
    Collections
    • Institute for Systems Research Technical Reports

    DRUM is brought to you by the University of Maryland Libraries
    University of Maryland, College Park, MD 20742-7011 (301)314-1328.
    Please send us your comments.
    Web Accessibility
     

     

    Browse

    All of DRUMCommunities & CollectionsBy Issue DateAuthorsTitlesSubjectsThis CollectionBy Issue DateAuthorsTitlesSubjects

    My Account

    LoginRegister
    Pages
    About DRUMAbout Download Statistics

    DRUM is brought to you by the University of Maryland Libraries
    University of Maryland, College Park, MD 20742-7011 (301)314-1328.
    Please send us your comments.
    Web Accessibility