USENIX Security2016
Specification Mining for Intrusion Detection in Networked Control Systems
Marco Caselli, Emmanuele Zambon, Johanna Amann, Robin Sommer, Frank Kargl
被引用 51 次
摘要
Network Intrusion Detection in a Nutshell 8/17/2016 Usenix Security Symposium 2 • From anomaly-based to specification-based • Not all infrastructures come with specifications • Deploying these IDSs requires substantial human effort Our goal We aim to ease the deployment of a specification-based IDS by automating the creation of its specification rules 8/17/2016 Usenix Security Symposium 5