As the Internet technologies are innovated faster, the side-effects, such as hacking, virus, and worm, occur more and more. To control these sideeffects, many companies, governments deploy and operate IDS on their networks. However, current IDS system has some problems to solve as follows, and these problems make the IDS more vulnerable to fine-grained, distributed, and large-scaled attacks. Therefore we propose a flexible and effective system using heterogeneous correlation and aggregation methods to control these problems. The system can generate a proper event or a new event for related attack. It helps that the administrator analyzes the excessive events effectively and responses against the attack properly. © Springer-Verlag 2004.
CITATION STYLE
Lee, D. H., Seo, J. T., & Ryou, J. C. (2004). Alerts Correlation System to Enhance the Performance of the Network-Based Intrusion Detection System. Lecture Notes in Computer Science (Including Subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 3251, 333–340. https://doi.org/10.1007/978-3-540-30208-7_48
Mendeley helps you to discover research relevant for your work.