科技报告详细信息
Detecting Danger: The Dendritic Cell Algorithm
Greensmith, Julie ; Aickelin, Uwe ; Cayzer, Steve
HP Development Company
关键词: algorithms;    context;    computer security;    danger;   
RP-ID  :  HPL-2008-200
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

The Dendritic Cell Algorithm (DCA) is inspired by the function of the dendritic cells of the human immune system. In nature, dendritic cells are the intrusion detection agents of the human body, policing the tissue and organs for potential invaders in the form of pathogens. In this research, an abstract model of dendritic cell (DC) behavior is developed and subsequently used to form an algorithm the DCA. The abstraction process was facilitated through close collaboration with laboratory-based immunologists, who performed bespoke experiments, the results of which are used as an integral part of this algorithm. The DCA is a population based algorithm, with each agent in the system represented as an artificial DC. Each DC has the ability to combine multiple data streams and can add context to data suspected as anomalous. In this chapter, the abstraction process and details of the resultant algorithm are given. The algorithm is applied to numerous intrusion detection problems in computer security including the detection of port scans and botnets, where it has produced impressive results with relatively low rates of false positives.

【 预 览 】
附件列表
Files Size Format View
RO201804100002128LZ 514KB PDF download
  文献评价指标  
  下载次数:12次 浏览次数:70次