Matches in SemOpenAlex for { <https://semopenalex.org/work/W103440906> ?p ?o ?g. }
- W103440906 abstract "A new methodology has been developed for adaptive, automated intrusion response (IR) focusing on the role of software agents in providing that response. The majority of intrusion response systems (IRSs) react to attacks by generating reports or alarms. This introduces a window of vulnerability between when an intrusion is detected and when action is taken to defend against the attack. This window of vulnerability has been reduced through an agent-based system that adaptively responds to intrusions. Multiple IDSs monitor a computer system and generate intrusion alarms. Interface agents maintain a model of each IDS based on number of false positives/negatives previously generated. It uses this model to generate an attack confidence metric and passes this metric along with the intrusion alarm to the Master Analysis agent. The Master Analysis agent classifies whether the incident is a continuation of an existing incident or is a new attack. If it is a new attack, the Master Analysis agent creates a new Analysis agent to develop a response plan to the new attack. If the incident is a continuation of an existing attack, the Master Analysis agent passes the attack confidence metric and intrusion alarm to the existing Analysis agent handling the attack. The Analysis agent analyzes an incident until it is resolved and generates a course of action to resolve the incident. To generate this course of action, the Analysis agent involves the Response Taxonomy agent to classify the attack and Policy Specification agent to limit the response based on legal, ethical, institutional, or resource constraints. The Analysis agent creates a course of action and then invokes the appropriate components of the Response Toolkit. The Analysis agents employ adaptive decision-making based on the success of previous responses. As decisions are made, the results are displayed to the user interface. This research presents a novel IR methodology that includes: response adaptation to intrusive behavior based on confidence in the intrusion detection mechanism; response adaptation to intrusive behavior based on the success of previous intrusion responses; and, synergistic support for multiple IDSs." @default.
- W103440906 created "2016-06-24" @default.
- W103440906 creator A5066924207 @default.
- W103440906 creator A5069637821 @default.
- W103440906 date "2001-01-01" @default.
- W103440906 modified "2023-09-23" @default.
- W103440906 title "Adaptive agent-based intrusion response" @default.
- W103440906 cites W126572551 @default.
- W103440906 cites W1481915258 @default.
- W103440906 cites W1483652783 @default.
- W103440906 cites W1486268276 @default.
- W103440906 cites W1503609498 @default.
- W103440906 cites W1505757964 @default.
- W103440906 cites W1506072753 @default.
- W103440906 cites W1573137014 @default.
- W103440906 cites W1578129942 @default.
- W103440906 cites W1587953567 @default.
- W103440906 cites W1674877186 @default.
- W103440906 cites W1694085647 @default.
- W103440906 cites W179699880 @default.
- W103440906 cites W181041240 @default.
- W103440906 cites W1913306154 @default.
- W103440906 cites W1956128755 @default.
- W103440906 cites W1959547409 @default.
- W103440906 cites W1964549039 @default.
- W103440906 cites W1965448880 @default.
- W103440906 cites W1975348168 @default.
- W103440906 cites W1992820542 @default.
- W103440906 cites W2003701949 @default.
- W103440906 cites W2007909139 @default.
- W103440906 cites W2096178388 @default.
- W103440906 cites W2100215068 @default.
- W103440906 cites W2100903665 @default.
- W103440906 cites W2105557138 @default.
- W103440906 cites W2109540106 @default.
- W103440906 cites W2111245913 @default.
- W103440906 cites W2111438441 @default.
- W103440906 cites W2112302400 @default.
- W103440906 cites W2113609601 @default.
- W103440906 cites W2117002131 @default.
- W103440906 cites W2117658003 @default.
- W103440906 cites W2118112548 @default.
- W103440906 cites W2131970275 @default.
- W103440906 cites W2141992351 @default.
- W103440906 cites W2150847526 @default.
- W103440906 cites W2158390457 @default.
- W103440906 cites W2159515594 @default.
- W103440906 cites W2162038855 @default.
- W103440906 cites W2166332868 @default.
- W103440906 cites W2288766236 @default.
- W103440906 cites W2475472996 @default.
- W103440906 cites W3214373139 @default.
- W103440906 hasPublicationYear "2001" @default.
- W103440906 type Work @default.
- W103440906 sameAs 103440906 @default.
- W103440906 citedByCount "16" @default.
- W103440906 countsByYear W1034409062012 @default.
- W103440906 countsByYear W1034409062013 @default.
- W103440906 countsByYear W1034409062014 @default.
- W103440906 countsByYear W1034409062015 @default.
- W103440906 countsByYear W1034409062018 @default.
- W103440906 crossrefType "journal-article" @default.
- W103440906 hasAuthorship W103440906A5066924207 @default.
- W103440906 hasAuthorship W103440906A5069637821 @default.
- W103440906 hasConcept C154945302 @default.
- W103440906 hasConcept C35525427 @default.
- W103440906 hasConcept C38652104 @default.
- W103440906 hasConcept C41008148 @default.
- W103440906 hasConcept C64869954 @default.
- W103440906 hasConceptScore W103440906C154945302 @default.
- W103440906 hasConceptScore W103440906C35525427 @default.
- W103440906 hasConceptScore W103440906C38652104 @default.
- W103440906 hasConceptScore W103440906C41008148 @default.
- W103440906 hasConceptScore W103440906C64869954 @default.
- W103440906 hasLocation W1034409061 @default.
- W103440906 hasOpenAccess W103440906 @default.
- W103440906 hasPrimaryLocation W1034409061 @default.
- W103440906 hasRelatedWork W1584620713 @default.
- W103440906 hasRelatedWork W1800991598 @default.
- W103440906 hasRelatedWork W1949243903 @default.
- W103440906 hasRelatedWork W19881422 @default.
- W103440906 hasRelatedWork W2016551721 @default.
- W103440906 hasRelatedWork W2032897110 @default.
- W103440906 hasRelatedWork W2038889839 @default.
- W103440906 hasRelatedWork W2068036033 @default.
- W103440906 hasRelatedWork W2097141051 @default.
- W103440906 hasRelatedWork W2097209984 @default.
- W103440906 hasRelatedWork W2097688220 @default.
- W103440906 hasRelatedWork W2098875950 @default.
- W103440906 hasRelatedWork W2113656103 @default.
- W103440906 hasRelatedWork W2125109784 @default.
- W103440906 hasRelatedWork W2139065819 @default.
- W103440906 hasRelatedWork W2156352116 @default.
- W103440906 hasRelatedWork W2157636101 @default.
- W103440906 hasRelatedWork W2157966817 @default.
- W103440906 hasRelatedWork W2288766236 @default.
- W103440906 hasRelatedWork W2348102063 @default.
- W103440906 isParatext "false" @default.
- W103440906 isRetracted "false" @default.
- W103440906 magId "103440906" @default.