Re: Human-oriented IDS, new Paper+Tool

From: Barrie Dempster (barrie@reboot-robot.net)
Date: Sun Dec 04 2005 - 19:38:24 EST


On Sat, 2005-12-03 at 23:35 +0100, Steffen Wendzel wrote:
> Hi,
>
> i wrote a new paper about a kind of IDS i call 'Human oriented
> IDS' which uses detected differences in users behavior to detect
> accounts overtaken by attackers.
>
> You can find the paper and the beta-version of the tool i call
> fupids2 at http://cdp.doomed-reality.org/fupids2/

The rest of us call it "anomaly based detection"
http://www.google.com/search?hl=en&q=anomaly+based+detection&btnG=Google
+Search

-- 
With Regards..
Barrie Dempster (zeedo) - Fortiter et Strenue
"He who hingeth aboot, geteth hee-haw" Victor - Still Game
blog:  http://reboot-robot.net
sites: http://www.bsrf.org.uk - http://www.security-forums.com
ca:    https://www.cacert.org/index.php?id=3




This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:55:14 EDT