Please use this identifier to cite or link to this item: https://www.um.edu.mt/library/oar/handle/123456789/99534
Full metadata record
DC FieldValueLanguage
dc.contributor.authorVella, Mark Joseph-
dc.contributor.authorRoper, Marc-
dc.contributor.authorTerzis, Sotirios-
dc.date.accessioned2022-07-19T06:51:54Z-
dc.date.available2022-07-19T06:51:54Z-
dc.date.issued2010-
dc.identifier.citationVella, M., Roper, M., & Terzis, S. (2010, July). Danger theory and intrusion detection: Possibilities and limitations of the analogy. International Conference on Artificial Immune Systems, Germany. 276-289.en_GB
dc.identifier.urihttps://www.um.edu.mt/library/oar/handle/123456789/99534-
dc.description.abstractMetaphors derived from Danger Theory, a hypothesized model of how the human immune system works, have been applied to the intrusion detection domain. The major contribution in this area, is the dendritic cell algorithm (DCA). This paper presents an in-depth analysis of results obtained from two previous experiments, regarding the suitability of the danger theory analogy in constructing intrusion detection systems for web applications. These detectors would be capable of detecting novel attacks while improving on the limitations of anomaly based intrusion detectors. In particular, this analysis investigates which aspects of this analogy are suitable for this purpose, and which aspects of the analogy are counterproductive if utilized in the way originally suggested by danger theory. Several suggestions are given for those aspects of danger theory that are identified to require modification, indicating the possibility of further pursuing this approach. These modifications could be realized in terms of developing a robust signal selection schema and a suitable correlation algorithm. This would allow for an intrusion detection approach that has the potential to overcome those limitations presently associated with existing techniques.en_GB
dc.language.isoenen_GB
dc.publisherSpringeren_GB
dc.rightsinfo:eu-repo/semantics/restrictedAccessen_GB
dc.subjectIntrusion detection systems (Computer security)en_GB
dc.subjectAnomaly detection (Computer security)en_GB
dc.subjectCoding theoryen_GB
dc.subjectComputer securityen_GB
dc.subjectData encryption (Computer science)en_GB
dc.titleDanger theory and intrusion detection : possibilities and limitations of the analogyen_GB
dc.typeconferenceObjecten_GB
dc.rights.holderThe copyright of this work belongs to the author(s)/publisher. The rights of this work are as defined by the appropriate Copyright Legislation or as modified by any successive legislation. Users may access this work and can make use of the information contained in accordance with the Copyright Legislation provided that the author must be properly acknowledged. Further distribution or reproduction in any format is prohibited without the prior permission of the copyright holder.en_GB
dc.bibliographicCitation.conferencenameInternational Conference on Artificial Immune Systemsen_GB
dc.bibliographicCitation.conferenceplaceEdinburgh, United Kingdom, 26-29/07/2010en_GB
dc.description.reviewedpeer-revieweden_GB
Appears in Collections:Scholarly Works - FacICTCS

Files in This Item:
File Description SizeFormat 
Danger_theory_and_intrusion_detection__Possibilities_and_limitations_of_the_analogy(2010).pdf
  Restricted Access
245.85 kBAdobe PDFView/Open Request a copy


Items in OAR@UM are protected by copyright, with all rights reserved, unless otherwise indicated.