Abstract
This article presents evaluations of an immunity-based anomaly detection method with dynamic updating of profiles. Our experiments showed that the updating of both self and nonself profiles markedly decreased both the false alarm and missed alarm rates in masquerader detection. In computer worm detection, all the random-scanning worms and simulated metaserver worms examined were detected. The detection accuracy of the simulated passive worm was markedly improved.
Similar content being viewed by others
References
Schonlau M, DuMouchel W, Ju W, et al (2001) Computer intrusion: detecting masquerades. Stat Sci 16(1):58–74
Okamoto T, Ishida Y (2009) An immunity-based anomaly detection system with sensor agents. Sensors 9(11):9175–9195
Okamoto T, Ishida Y (2008) Dynamic updating of profiles for an immunity-based anomaly detection system. LNAI 5179, pp 456–464
Kim J, Bentley P, Aickelin U, et al (2007) Immune system approaches to intrusion detection: a review. Nat Comput 6(4):413–466
Kephart J (1994) A biologically inspired immune system for computers. In: Brooks RA, Maes P (ed) Artif Life IV, MIT, pp 130–139
Forrest S, Hofmeyr S, Somayaji A, et al (1996) A sense of self for unix processes. Proceedings of the 1996 IEEE Symposium on Security and Privacy, pp 120–128
Aickelin U, Cayzer S (2002) The danger theory and its application to artificial immune systems. Proceedings of the 1st International Conference on Artificial Immune Systems, pp 141–148
Okamoto T, Ishida Y (2006) Towards an immunity-based anomaly detection system for network traffic. LNAI 4252, pp 123–130
Weaver N, Paxson V, Staniford S, et al (2003) A taxonomy of computer worms. Proceedings of the 2003 ACM Workshop on Rapid Malcode, pp 11–18
Author information
Authors and Affiliations
Corresponding author
Additional information
This work was presented in part at the 15th International Symposium on Artificial Life and Robotics, Oita, Japan, February 4–6, 2010
About this article
Cite this article
Okamoto, T., Ishida, Y. Evaluations for immunity-based anomaly detection with dynamic updating of profiles. Artif Life Robotics 15, 225–228 (2010). https://doi.org/10.1007/s10015-010-0800-0
Received:
Accepted:
Published:
Issue Date:
DOI: https://doi.org/10.1007/s10015-010-0800-0