基于系统调用的入侵检测规则的生成

来源 :计算机工程与应用 | 被引量 : 0次 | 上传用户:nhhwhm
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
由授权进程产生的系统调用短序列可作为计算机免疫系统中的“自我”标识。介绍如何利用数据挖掘技术在应用程序的系统调用数据集上进行分类挖掘,从而生成计算机免疫系统中的入侵检测规则,给出并分析了实验结果,发现用此方法生成的规则对未知数据进行分类有较高的准确率。 The short sequences of system calls generated by the authorizing process can be identified as “self” in the computer’s immune system. This paper introduces how to use data mining technology to classify and mine the system call datasets of applications to generate intrusion detection rules in the computer immune system. The experimental results are given and analyzed. The rules generated by this method are used to classify the unknown data Have a higher accuracy.
其他文献
高白细胞急性白血病 (hyperleukocytosis acuteleukemia,HAL)是指各种急性白血病患者外周血白细胞计数超过 10 0× 10 9/ L,由此引起的一系列特殊临床表现。临床上HAL患者的
小美刚上小学几天,每天回家第一件事就是赶紧去厕所,这一两天闹着不去学校,经过爸妈一直追问才知道原来是因为在学校每次上厕所都要排队,而老师规定上课铃响完后就要坐在教室
The analysis of the "tree-like network" construct method has been repeated.The high effective conduction channel distribution has been optimized again, without
Two variable channel-coding schemes with unequal error protection (UEP) are proposed in terms of speech transmission over VHF-mobile radio system. These channel
通过1988年上海土地有偿使用以来土地出让数据的空间分析,指出上海在土地资本市场化运行中的不均衡发展与非理性扩张。借助政治经济学中“成长取向联盟”的观点,揭示这些问题背后所隐藏的内在机制是土地资本市场化运作中市场竞争性的核心本质与“发展型地方主义”下地方政府着重于经济发展模式的契合。
Non-linear finite element code MSC.Marc(c) was utilized to analysis the field of stress of the Al2O3 joints brazed with composite filler materials.The propertie
Nanoindentation method was adopted to investigate the distribution regularities of micro-mechanical properties of 2219 twin wire welded joints, thus providing t
[(6-oxide-6H-dibenze(c, e)(1, 2) oxaphosphorin-6-yl) methyl]-butanedioic acid (DDP) was prepared and characterized. Solubilities of o-phenylphenol(OPP) in petro
The method of quantization noise control of audio coding in the wavelet domain is proposed. Using the inverse Discrete Fourier Transform (DFT), it converts the
The effect of rating scales and test parts of body on the fabric-evoked prickle evaluation results are studied by carrying out subjective evaluation tests under