![]() |
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.
|
|
google unix.com
|
|||||||
| Forums | Register | Forum Rules | Links | Albums | FAQ | Members List | Calendar | Search | Today's Posts | Mark Forums Read |
| Security Discuss UNIX and Linux computer and network security, cybersecurity, cyberattacks, IT security, CISSP, OWASP and more. |
More UNIX and Linux Forum Topics You Might Find Helpful
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| A simple intrusion detection script | otheus | Shell Programming and Scripting | 3 | 04-15-2009 05:11 AM |
| Detection Theory: Signature Versus Anomaly Detection | iBot | IT Security RSS | 0 | 11-29-2008 03:40 AM |
| S-319: Cisco Intrusion Prevention System Vulnerability | iBot | Security Advisories (RSS) | 0 | 06-19-2008 02:20 PM |
| Coral8: Event Stream Processing and Intrusion Detection | iBot | Complex Event Processing RSS News | 0 | 01-03-2008 05:10 AM |
| how to differentiate system call from library call | muru | UNIX for Advanced & Expert Users | 2 | 07-19-2007 11:20 PM |
![]() |
|
|
LinkBack | Thread Tools | Search this Thread | Rate Thread | Display Modes |
|
|||||
|
Quote:
What is your platform, your application and APIs? ---- Note: Refer to the attached paper on BlueBox, a host-based IDS research project that uses Linux kernel modifications for system call introspection. One of the main issues with system call introspection is, generally speaking, the requirement to modify the kernel so system calls can be inspected. Also note: The attached paper describes a rule-based approach for system call introspection. A rule-based approach alone, while this approach does have value, is inefficient and labor intensive. A machine-learning algorithm that crunches events from system call introspection APIs is requires for more advanced, complex analysis. Last edited by Neo; 04-09-2009 at 03:35 PM.. Reason: added notes. |
| Sponsored Links | ||
|
|
![]() |
| Bookmarks |
| Tags |
| computer security, host-based ids, ids, intrusion detection, security, system call introspection |
| Thread Tools | Search this Thread |
| Display Modes | Rate This Thread |
|
|