科技报告详细信息
Network Worm Detection using Markov's and Cantelli's Inequalities
Mowbray, Miranda
HP Development Company
关键词: network worms;    anomaly detection;   
RP-ID  :  HPL-2009-162
学科分类:计算机科学(综合)
美国|英语
来源: HP Labs
PDF
【 摘 要 】

This paper presents a method of detecting network worms, which makes use of Markov's and Cantelli's statistical inequalities. This method is compared with a detection method based on one used in a commercial security product, using a data set consisting of over 3 million packets sampled from an enterprise network. The Markov-Cantelli detection method produces considerably fewer false alarms than the comparison method.

【 预 览 】
附件列表
Files Size Format View
RO201804100002655LZ 241KB PDF download
  文献评价指标  
  下载次数:9次 浏览次数:24次