000 05865nam a22006255i 4500
001 978-3-540-87403-4
003 DE-He213
005 20240730203709.0
007 cr nn 008mamaa
008 100301s2008 gw | s |||| 0|eng d
020 _a9783540874034
_9978-3-540-87403-4
024 7 _a10.1007/978-3-540-87403-4
_2doi
050 4 _aQA76.9.M3
072 7 _aKJQ
_2bicssc
072 7 _aCOM039000
_2bisacsh
072 7 _aKJQ
_2thema
082 0 4 _a004.068
_223
245 1 0 _aRecent Advances in Intrusion Detection
_h[electronic resource] :
_b11th International Symposium, RAID 2008, Cambridge, MA, USA, September 15-17, 2008, Proceedings /
_cedited by Richard Lippmann, Engin Kirda, Ari Trachtenberg.
250 _a1st ed. 2008.
264 1 _aBerlin, Heidelberg :
_bSpringer Berlin Heidelberg :
_bImprint: Springer,
_c2008.
300 _aXIV, 424 p.
_bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _aonline resource
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
490 1 _aSecurity and Cryptology,
_x2946-1863 ;
_v5230
505 0 _aRecent Advances in Intrusion Detection -- Guest-Transparent Prevention of Kernel Rootkits with VMM-Based Memory Shadowing -- Countering Persistent Kernel Rootkits through Systematic Hook Discovery -- Malware Detection and Prevention -- Tamper-Resistant, Application-Aware Blocking of Malicious Network Connections -- A First Step towards Live Botmaster Traceback -- A Layered Architecture for Detecting Malicious Behaviors -- A Study of the Packer Problem and Its Solutions -- High Performance Intrusion Detection and Evasion -- Gnort: High Performance Network Intrusion Detection Using Graphics Processors -- Predicting the Resource Consumption of Network Intrusion Detection Systems -- High-Speed Matching of Vulnerability Signatures -- Web Application Testing and Evasion -- Swarm Attacks against Network-Level Emulation/Analysis -- Leveraging User Interactions for In-Depth Testing of Web Applications -- Model-Based Covert Timing Channels: Automated Modeling and Evasion -- Alert Correlation and Worm Detection -- Optimal Cost, Collaborative, and Distributed Response to Zero-Day Worms - A Control Theoretic Approach -- On the Limits of Payload-Oblivious Network Attack Detection -- Determining Placement of Intrusion Detectors for a Distributed Application through Bayesian Network Modeling -- A Multi-Sensor Model to Improve Automated Attack Detection -- Anomaly Detection and Network Traffic Analysis -- Monitoring SIP Traffic Using Support Vector Machines -- The Effect of Clock Resolution on Keystroke Dynamics -- A Comparative Evaluation of Anomaly Detectors under Portscan Attacks -- Advanced Network Fingerprinting -- Posters -- On Evaluation of Response Cost for Intrusion Response Systems -- WebIDS: A Cooperative Bayesian Anomaly-Based Intrusion Detection System for Web Applications (Extended Abstract) -- Evading Anomaly Detection through Variance Injection Attacks on PCA -- Anticipating Hidden Text Salting in Emails -- Improving Anomaly Detection Error Rate by Collective Trust Modeling -- Database Intrusion Detection and Response -- An Empirical Approach to Identify Information Misuse by Insiders (Extended Abstract) -- Page-Based Anomaly Detection in Large Scale Web Clusters Using Adaptive MapReduce (Extended Abstract) -- Automating the Analysis of Honeypot Data (Extended Abstract) -- Anomaly and Specification Based Cognitive Approach for Mission-Level Detection and Response -- Monitoring the Execution of Third-Party Software on Mobile Devices -- Streaming Estimation of Information-Theoretic Metrics for Anomaly Detection (Extended Abstract) -- Bots Behaviors vs. Human Behaviors on Large-Scale Communication Networks (Extended Abstract) -- Anomalous Taint Detection -- Deep Packet Inspection Using Message Passing Networks -- System Call API Obfuscation (Extended Abstract).
520 _aThis book constitutes the refereed proceedings of the 11th International Symposium on Recent Advances in Intrusion Detection, RAID 2008, held in Cambridge, MA, USA, in September 2008. The 20 revised full papers presented together with 16 revised poster papers were carefully reviewed and selected from 80 submissions. The papers are organized in topical sections on rootkit prevention, malware detection and prevention, high performance intrusion and evasion, Web application testing and evasion, alert correlation and worm detection, as well as anomaly detection and network traffic analysis.
650 0 _aElectronic data processing
_xManagement.
_9177009
650 0 _aComputers and civilization.
_921733
650 0 _aCryptography.
_91973
650 0 _aData encryption (Computer science).
_99168
650 0 _aComputer networks .
_931572
650 0 _aData protection.
_97245
650 1 4 _aIT Operations.
_931703
650 2 4 _aComputers and Society.
_931668
650 2 4 _aCryptology.
_931769
650 2 4 _aComputer Communication Networks.
_9177010
650 2 4 _aData and Information Security.
_931990
700 1 _aLippmann, Richard.
_eeditor.
_4edt
_4http://id.loc.gov/vocabulary/relators/edt
_9177011
700 1 _aKirda, Engin.
_eeditor.
_4edt
_4http://id.loc.gov/vocabulary/relators/edt
_9177012
700 1 _aTrachtenberg, Ari.
_eeditor.
_4edt
_4http://id.loc.gov/vocabulary/relators/edt
_9177013
710 2 _aSpringerLink (Online service)
_9177014
773 0 _tSpringer Nature eBook
776 0 8 _iPrinted edition:
_z9783540874027
776 0 8 _iPrinted edition:
_z9783540874348
830 0 _aSecurity and Cryptology,
_x2946-1863 ;
_v5230
_9177015
856 4 0 _uhttps://doi.org/10.1007/978-3-540-87403-4
912 _aZDB-2-SCS
912 _aZDB-2-SXCS
912 _aZDB-2-LNC
942 _cELN
999 _c97600
_d97600