Abstract:
We introduce an algorithm called LERAD that learns rules for finding rare events in nominal time-series data with long range dependencies. We use LERAD to find anomalies ...Show MoreMetadata
Abstract:
We introduce an algorithm called LERAD that learns rules for finding rare events in nominal time-series data with long range dependencies. We use LERAD to find anomalies in network packets and TCP sessions to detect novel intrusions. We evaluated LERAD on the 1999 DARPA/Lincoln Laboratory intrusion detection evaluation data set and on traffic collected in a university departmental server environment.
Published in: Third IEEE International Conference on Data Mining
Date of Conference: 22-22 November 2003
Date Added to IEEE Xplore: 19 December 2003
Print ISBN:0-7695-1978-4