Inventors list

Assignees list

Classification tree browser

Top 100 Inventors

Top 100 Assignees


The School of Electrical Eng. & Computer Science (SEECS), National University of sciences

The School of Electrical Eng. & Computer Science (SEECS), National University of sciences Patent applications
Patent application numberTitlePublished
20110185422Method and system for adaptive anomaly-based intrusion detection - The input characteristics of a real-time IDS change continuously with time therefore setting a rigid (time and behavior invariant) classification threshold limits the accuracy that the IDS can potentially achieve. A generic threshold tuning method and system is proposed which can adaptively tune the detection threshold of a real-time IDS in accordance with varying host and network behavior. The method and system perform statistical and information-theoretic analyses of network and host-based IDSs' anomaly based intrusions to reveal a consistent time correlation structure between benign activity periods which is used to predict future anomaly scores and to adapt an IDS' detection threshold accordingly.07-28-2011