摘要
In this paper three light-weighted detectors have been developed in order to protect the key host. Alerts from each detector have been aggregated and correlated in the spatio-temporal space. Due to the uncertainty in describing attacks, the rough set theory has been applied into the aggregation of alerts in the spatial space. Experiments show that this way can not only reduce the amount of futile and repetitive alerts but also increase the detection rate.
源语言 | 英语 |
---|---|
页(从-至) | 27-28+210 |
期刊 | Jisuanji Gongcheng/Computer Engineering |
卷 | 31 |
期 | 7 |
出版状态 | 已出版 - 5 4月 2005 |