pith. sign in

arxiv: cs/0511043 · v4 · submitted 2005-11-11 · 💻 cs.CR

Poseidon: a 2-tier Anomaly-based Intrusion Detection System

classification 💻 cs.CR
keywords detectionposeidonsystemintrusionpaylanomalyanomaly-basedarchitecture
0
0 comments X
read the original abstract

We present Poseidon, a new anomaly based intrusion detection system. Poseidon is payload-based, and presents a two-tier architecture: the first stage consists of a Self-Organizing Map, while the second one is a modified PAYL system. Our benchmarks on the 1999 DARPA data set show a higher detection rate and lower number of false positives than PAYL and PHAD.

This paper has not been read by Pith yet.

discussion (0)

Sign in with ORCID, Apple, or X to comment. Anyone can read and Pith papers without signing in.