articleNov 13, 2002Closed access
Intrusion detection via static analysis
University of California, Berkeley · Palo Alto Research Center
Indexed incrossref
Abstract
One of the primary challenges in intrusion detection is modelling typical application behavior so that we can recognize attacks by their atypical effects without raising too many false alarms. We show how static analysis may be used to automatically derive a model of application behavior. The result is a host-based intrusion detection system with three advantages: a high degree of automation, protection against a broad class of attacks based on corrupted code, and the elimination of false alarms. We report on our experience with a prototype implementation of this technique.
Citation impact
650
total citations
- FWCI
- 38.43
- Percentile
- 100%
- References
- 52
Citations per year
Authors
2Topics & keywords
Topics
Keywords
- Intrusion detection system
- Computer science
- Static analysis
- Automation
- Class (philosophy)
- Intrusion
- Host (biology)
- Misuse detection
UN Sustainable Development Goals
- Peace, Justice and strong institutions
No related works found for this paper.