计算机科学 ›› 2011, Vol. 38 ›› Issue (1): 20-25.

• 综述 • 上一篇    下一篇

基于系统调用的入侵检测研究进展

吴瀛,江建慧,张蕊   

  1. (同济大学计算机科学与技术系 上海200092)
  • 出版日期:2018-11-16 发布日期:2018-11-16
  • 基金资助:
    本文受863国家重点基金项目(2007AA01Z142)资助。

System Calls Based Intrusion Detection:A Survey

WU Ying,JIANG Jian-hui,ZHANG Rui   

  • Online:2018-11-16 Published:2018-11-16

摘要: 基于系统调用的入侵检测是当前信息安全领域的研究热点之一。全面分析了已有的基于系统调用的入侵检测的理论与技术,总结了近年来的研究进展,并对其发展趋势进行了展望。随着基于Tide的商用系统SanAPT的推出,需要进一步研究的将是提高检测性能,降低误报率,解决与实用化相关的多平台、轻量化、分布化等方面的问题。

关键词: 入侵检测,系统调用,多平台,轻量化,分布化

Abstract: System call based intrusion detection is currently a hot subject of research all over the world.The existing system call based intrusion detection techniques and theories with their respective challenges and research trends were discussed comprehensively,especially those(that are) newly developed. We hold that with the advent of the Tide-based commercial intrusion detection system(IDS) SanAPT, how to improve detection performance, to decrease error alarm rate and to solve issues on multiplatform,lightweight,and distribution related to practicality of the IDSs will be hot topics in this field.

Key words: Intrusion detection, System call, Multiplatform,Lightweight, Distribution

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!