中国科学院软件研究所机构知识库
Advanced  
ISCAS OpenIR  > 软件所图书馆  > 会议论文
Title:
improved edit distance method for system call anomaly detection
Author: Qian Quan ; Wu Jinlin ; Zhu Wei ; Xin Mingjun
Source: Proceedings - 2012 IEEE 12th International Conference on Computer and Information Technology, CIT 2012
Conference Name: 2012 IEEE 12th International Conference on Computer and Information Technology, CIT 2012
Conference Date: October 27, 2012 - October 29, 2012
Issued Date: 2012
Conference Place: Chengdu, Sichuan, China
Keyword: Information technology
Indexed Type: EI
ISBN: 9780769548586
Department: (1) School of Computer Engineering and Science Shanghai University Shanghai China State Key Laboratory of Information Security Institute of Software Chinese Academy of Sciences Beijing China
Sponsorship: IEEE Computer Society; IEEE; IEEE Technical Committee on Scalable Computing (TCSC)
Abstract: Edit distance has been widely used in different areas to evaluate the similarity between strings of characters. In this paper, the improved edit distance is applied into the short sequence anomaly detection, a kind of host security area. Some modifications for original edit distance including the position exchange and the shortest distance algorithm are described in detail. Through experiment, it shows that the edit distance based anomaly detection method is proved to be more stable and better detection precision than the classical sequence analysis STIDE method. © 2012 IEEE.
English Abstract: Edit distance has been widely used in different areas to evaluate the similarity between strings of characters. In this paper, the improved edit distance is applied into the short sequence anomaly detection, a kind of host security area. Some modifications for original edit distance including the position exchange and the shortest distance algorithm are described in detail. Through experiment, it shows that the edit distance based anomaly detection method is proved to be more stable and better detection precision than the classical sequence analysis STIDE method. © 2012 IEEE.
Language: 英语
Content Type: 会议论文
URI: http://ir.iscas.ac.cn/handle/311060/15869
Appears in Collections:软件所图书馆_会议论文

Files in This Item:

There are no files associated with this item.


Recommended Citation:
Qian Quan,Wu Jinlin,Zhu Wei,et al. improved edit distance method for system call anomaly detection[C]. 见:2012 IEEE 12th International Conference on Computer and Information Technology, CIT 2012. Chengdu, Sichuan, China. October 27, 2012 - October 29, 2012.
Service
Recommend this item
Sava as my favorate item
Show this item's statistics
Export Endnote File
Google Scholar
Similar articles in Google Scholar
[Qian Quan]'s Articles
[Wu Jinlin]'s Articles
[Zhu Wei]'s Articles
CSDL cross search
Similar articles in CSDL Cross Search
[Qian Quan]‘s Articles
[Wu Jinlin]‘s Articles
[Zhu Wei]‘s Articles
Related Copyright Policies
Null
Social Bookmarking
Add to CiteULike Add to Connotea Add to Del.icio.us Add to Digg Add to Reddit
所有评论 (0)
暂无评论
 
评注功能仅针对注册用户开放,请您登录
您对该条目有什么异议,请填写以下表单,管理员会尽快联系您。
内 容:
Email:  *
单位:
验证码:   刷新
您在IR的使用过程中有什么好的想法或者建议可以反馈给我们。
标 题:
 *
内 容:
Email:  *
验证码:   刷新

Items in IR are protected by copyright, with all rights reserved, unless otherwise indicated.

 

 

Valid XHTML 1.0!
Copyright © 2007-2019  中国科学院软件研究所 - Feedback
Powered by CSpace