Coral8: Event Stream Processing and Intrusion Detection


 
Thread Tools Search this Thread
Special Forums News, Links, Events and Announcements Complex Event Processing RSS News Coral8: Event Stream Processing and Intrusion Detection
# 1  
Old 01-03-2008
Coral8: Event Stream Processing and Intrusion Detection

Tim Bass
Thu, 03 Jan 2008 09:08:00 +0000

Not quite ready for prime-time,*we*have been testing our home-grown UNIX domain socket adapter using Coral8 Java APIs.** We are using this adapter to evaluate and demonstrate*stream processing*with intrusion detection systems (IDS) using event stream processing to reduce false alarms, detect derived situations from the raw intrusion event data, and feed a security management visualization dashboard.
You can click on the teaser image below to see*more*of our first IDS screenshots from Coral8’s Studio stream visualization tool .
Image
If you click on the*image above, you will four additional event stream properties.* For this*part of the demo, there are 14 total IDS properties in the event stream, but we only show 5 properties in this cropped screen capture.
I am quite sure that we could do similar integration with other event stream*processing engines, but fortunately Coral8 makes it easy to download, start developing and testing.*
Image Image Image Image Image Image Image Image


Source...
Login or Register to Ask a Question

Previous Thread | Next Thread

4 More Discussions You Might Find Interesting

1. Programming

Parallel Processing Detection and Program Return Value Detection

Hey, for the purpose of a research project I need to know if a specific type of parallel processing is being utilized by any user-run programs. Is there a way to detect whether a program either returns a value to another program at the end of execution, or just utilizes any form of parallel... (4 Replies)
Discussion started by: azar.zorn
4 Replies

2. Shell Programming and Scripting

need bash script Intrusion Detection on Linux

Hello all I have a script but I failed on the creation of Script is any is carried out in the shell sends the owner of the server, the message is has been implemented For example, functioned as a detection system intruders but in smaller Is it possible to help if you allow I want the... (4 Replies)
Discussion started by: x-zer0
4 Replies

3. Shell Programming and Scripting

A simple intrusion detection script

If you have a very static Linux server and you want to make sure it's not messed with, here's a simple script that will tell you if any files have been tampered with. It's not as fancy or as secure as tripwire or those others, but it is very simple. It can be easily adapted to any *NIX OS. ... (3 Replies)
Discussion started by: otheus
3 Replies

4. Cybersecurity

Intrusion Detection - System Call Introspection

can u give me a code for host based intrusion detection using system call introspection... (5 Replies)
Discussion started by: aravind007
5 Replies
Login or Register to Ask a Question