Poseidon: a 2-tier Anomaly-based Network Intrusion Detection System


Bolzoni, Damiano and Zambon, Emmanuele and Etalle, Sandro and Hartel, Pieter (2006) Poseidon: a 2-tier Anomaly-based Network Intrusion Detection System. In: Fourth IEEE International Workshop on Information Assurance, IWIA 2006, 13-14 Apr 2006, London, UK (pp. pp. 144-156).

open access
Abstract:We present Poseidon, a new anomaly based intrusion detection system. Poseidon is payload-based, and presents a two-tier architecture: the first stage consists of a Self-Organizing Map, while the second one is a modified PAYL system. Our benchmarks on the 1999 DARPA data set show a higher detection rate and lower number of false positives than PAYL and PHAD.
Item Type:Conference or Workshop Item
Copyright:© 2006 IEEE
Electrical Engineering, Mathematics and Computer Science (EEMCS)
Research Group:
Link to this item:http://purl.utwente.nl/publications/64935
Official URL:https://doi.org/10.1109/IWIA.2006.18
Export this item as:BibTeX
HTML Citation
Reference Manager


Repository Staff Only: item control page

Metis ID: 237425