Network Worm Detection Using Markov's and Cantelli's Inequalities

Source: Hewlett-Packard (HP)

Favorite

Free registration required

Provided by

/research-library/hewlett-packard+%28hp%29
This paper presents a method of detecting network worms, which makes use of Markov's and Cantelli's statistical inequalities. This method is compared with a detection method based on one used in a commercial security product, using a data set consisting of over 3 million packets sampled from an enterprise network. The Markov-Cantelli detection method produces considerably fewer false alarms than the comparison method.
Format:PDF Size:241.30
Date:Jul 2009