Journal of Software, Vol 2, No 6 (2007), 14-21, Dec 2007
doi:10.4304/jsw.2.6.14-21

Anomaly Detection Using System Call Sequence Sets

Surekha Mariam Varghese, K.Poulose Jacob

Abstract


This paper discusses our research in developing a generalized and systematic method for anomaly detection. The key ideas are to represent normal program behaviour using system call frequencies and to incorporate probabilistic techniques for classification to detect anomalies and intrusions. Using experiments on the sendmail system call data, we demonstrate that concise and accurate classifiers can be constructed to detect anomalies. An overview of the approach that we have implemented is provided.



Keywords


Intrusion, Security, Anomaly

References



Full Text: PDF


Journal of Software (JSW, ISSN 1796-217X)

Copyright @ 2006-2011 by ACADEMY PUBLISHER – All rights reserved.