Frequent subgraph mining based abnormal intrusion detection method
Patent Information
- Authority / Receiving Office
- CN · China
- Current Assignee / Owner
- SICHUAN UNIV
- Publication Date
- 2011-02-16
Smart Images
Figure 1 Figure 2 Figure 3
Abstract
Description
technical field
[0001] The invention relates to an intrusion detection method in network security, in particular to a method for detecting abnormal intrusion in the network by combining frequent subgraph mining theory with system call sequence. Background technique
[0002] With the rapid development of computer networks and the widening of application fields, the security of computers has attracted more and more attention. As an effective means to protect computer security, intrusion detection technology has gradually developed into a core research direction in the field of computer network security.
[0003] The system call sequence generated when the system process is executed contains some specific behavior patterns of the process, extracting and analyzing the patterns exhibited by these system calls, and matching the pattern with the system call sequence generated by the process in real time, can effectively supervise Privileged program activities and identifying abnor...