{"id":"https://openalex.org/W2007218186","doi":"https://doi.org/10.1109/pccc.2010.5682339","title":"Towards dynamic self-tuning for intrusion detection systems","display_name":"Towards dynamic self-tuning for intrusion detection systems","publication_year":2010,"publication_date":"2010-12-01","ids":{"openalex":"https://openalex.org/W2007218186","doi":"https://doi.org/10.1109/pccc.2010.5682339","mag":"2007218186"},"language":"en","primary_location":{"id":"doi:10.1109/pccc.2010.5682339","is_oa":false,"landing_page_url":"https://doi.org/10.1109/pccc.2010.5682339","pdf_url":null,"source":{"id":"https://openalex.org/S4306420035","display_name":"International Performance, Computing, and Communications Conference","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Performance Computing and Communications Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101622608","display_name":"Sun-il Kim","orcid":"https://orcid.org/0000-0003-0846-8620"},"institutions":[{"id":"https://openalex.org/I147853995","display_name":"University of Alaska Anchorage","ror":"https://ror.org/03k3c2t50","country_code":"US","type":"education","lineage":["https://openalex.org/I147853995"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Sun-il Kim","raw_affiliation_strings":["Electrical and Computer Systems Engineering, University of Alaska, Anchorage, Anchorage, AK, USA","Electrical and Computer Systems Engineering, University of Alaska Anchorage, Anchorage, AK, USA"],"affiliations":[{"raw_affiliation_string":"Electrical and Computer Systems Engineering, University of Alaska, Anchorage, Anchorage, AK, USA","institution_ids":["https://openalex.org/I147853995"]},{"raw_affiliation_string":"Electrical and Computer Systems Engineering, University of Alaska Anchorage, Anchorage, AK, USA","institution_ids":["https://openalex.org/I147853995"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015939233","display_name":"Nnamdi Nwanze","orcid":null},"institutions":[{"id":"https://openalex.org/I123946342","display_name":"Binghamton University","ror":"https://ror.org/008rmbt77","country_code":"US","type":"education","lineage":["https://openalex.org/I123946342"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nnamdi Nwanze","raw_affiliation_strings":["Electrical and Computer Systems Engineering, State University of New York, Binghamton, Binghamton, NY, USA","State University of New York at Binghamton , Binghamton , NY , USA"],"affiliations":[{"raw_affiliation_string":"Electrical and Computer Systems Engineering, State University of New York, Binghamton, Binghamton, NY, USA","institution_ids":["https://openalex.org/I123946342"]},{"raw_affiliation_string":"State University of New York at Binghamton , Binghamton , NY , USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5043385408","display_name":"Jasen Kintner","orcid":null},"institutions":[{"id":"https://openalex.org/I147853995","display_name":"University of Alaska Anchorage","ror":"https://ror.org/03k3c2t50","country_code":"US","type":"education","lineage":["https://openalex.org/I147853995"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jasen Kintner","raw_affiliation_strings":["Electrical and Computer Systems Engineering, University of Alaska, Anchorage, Anchorage, AK, USA","Electrical and Computer Systems Engineering, University of Alaska Anchorage, Anchorage, AK, USA"],"affiliations":[{"raw_affiliation_string":"Electrical and Computer Systems Engineering, University of Alaska, Anchorage, Anchorage, AK, USA","institution_ids":["https://openalex.org/I147853995"]},{"raw_affiliation_string":"Electrical and Computer Systems Engineering, University of Alaska Anchorage, Anchorage, AK, USA","institution_ids":["https://openalex.org/I147853995"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5101622608"],"corresponding_institution_ids":["https://openalex.org/I147853995"],"apc_list":null,"apc_paid":null,"fwci":0.8664,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.78867778,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"17","last_page":"24"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10064","display_name":"Complex Network Analysis Techniques","score":0.9929999709129333,"subfield":{"id":"https://openalex.org/subfields/3109","display_name":"Statistical and Nonlinear Physics"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8068634271621704},{"id":"https://openalex.org/keywords/intrusion-detection-system","display_name":"Intrusion detection system","score":0.791583776473999},{"id":"https://openalex.org/keywords/network-packet","display_name":"Network packet","score":0.7062647938728333},{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.6986743211746216},{"id":"https://openalex.org/keywords/anomaly-based-intrusion-detection-system","display_name":"Anomaly-based intrusion detection system","score":0.6598045229911804},{"id":"https://openalex.org/keywords/false-alarm","display_name":"False alarm","score":0.577911376953125},{"id":"https://openalex.org/keywords/constant-false-alarm-rate","display_name":"Constant false alarm rate","score":0.5551950335502625},{"id":"https://openalex.org/keywords/host","display_name":"Host (biology)","score":0.5267245769500732},{"id":"https://openalex.org/keywords/reliability","display_name":"Reliability (semiconductor)","score":0.5074488520622253},{"id":"https://openalex.org/keywords/real-time-computing","display_name":"Real-time computing","score":0.495797723531723},{"id":"https://openalex.org/keywords/change-detection","display_name":"Change detection","score":0.43978071212768555},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.4153587222099304},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.2944467067718506},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.2731735408306122},{"id":"https://openalex.org/keywords/power","display_name":"Power (physics)","score":0.09617576003074646}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8068634271621704},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.791583776473999},{"id":"https://openalex.org/C158379750","wikidata":"https://www.wikidata.org/wiki/Q214111","display_name":"Network packet","level":2,"score":0.7062647938728333},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.6986743211746216},{"id":"https://openalex.org/C137524506","wikidata":"https://www.wikidata.org/wiki/Q2247688","display_name":"Anomaly-based intrusion detection system","level":3,"score":0.6598045229911804},{"id":"https://openalex.org/C2776836416","wikidata":"https://www.wikidata.org/wiki/Q1364844","display_name":"False alarm","level":2,"score":0.577911376953125},{"id":"https://openalex.org/C77052588","wikidata":"https://www.wikidata.org/wiki/Q644307","display_name":"Constant false alarm rate","level":2,"score":0.5551950335502625},{"id":"https://openalex.org/C126831891","wikidata":"https://www.wikidata.org/wiki/Q221673","display_name":"Host (biology)","level":2,"score":0.5267245769500732},{"id":"https://openalex.org/C43214815","wikidata":"https://www.wikidata.org/wiki/Q7310987","display_name":"Reliability (semiconductor)","level":3,"score":0.5074488520622253},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.495797723531723},{"id":"https://openalex.org/C203595873","wikidata":"https://www.wikidata.org/wiki/Q25389927","display_name":"Change detection","level":2,"score":0.43978071212768555},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4153587222099304},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.2944467067718506},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2731735408306122},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.09617576003074646},{"id":"https://openalex.org/C18903297","wikidata":"https://www.wikidata.org/wiki/Q7150","display_name":"Ecology","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/pccc.2010.5682339","is_oa":false,"landing_page_url":"https://doi.org/10.1109/pccc.2010.5682339","pdf_url":null,"source":{"id":"https://openalex.org/S4306420035","display_name":"International Performance, Computing, and Communications Conference","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Performance Computing and Communications Conference","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":22,"referenced_works":["https://openalex.org/W1490025813","https://openalex.org/W1545175007","https://openalex.org/W1566480186","https://openalex.org/W1594536929","https://openalex.org/W1993426957","https://openalex.org/W2025087771","https://openalex.org/W2104824447","https://openalex.org/W2111947034","https://openalex.org/W2116065364","https://openalex.org/W2134903203","https://openalex.org/W2147311421","https://openalex.org/W2151305268","https://openalex.org/W2162240407","https://openalex.org/W4244733066","https://openalex.org/W6629285517","https://openalex.org/W6632470586","https://openalex.org/W6633944860","https://openalex.org/W6635283633","https://openalex.org/W6676910948","https://openalex.org/W6677305135","https://openalex.org/W6681619189","https://openalex.org/W6682596570"],"related_works":["https://openalex.org/W2337148208","https://openalex.org/W3004832009","https://openalex.org/W3036013726","https://openalex.org/W1971929717","https://openalex.org/W1724519426","https://openalex.org/W2351051591","https://openalex.org/W2369534771","https://openalex.org/W2357468538","https://openalex.org/W1548126107","https://openalex.org/W2209997499"],"abstract_inverted_index":{"Anomaly-based":[0],"intrusion":[1,181,214,244,272],"detection":[2,182,215,245,273],"systems":[3],"pattern":[4],"the":[5,34,43,47,62,66,85,111,116,124,132,173,178,243,252,259],"normal":[6,67],"activity":[7,83],"and":[8,156,233],"are":[9],"attractive":[10],"in":[11,81,98,171,231],"that":[12,30,38,118],"new,":[13],"never-seen":[14],"attacks":[15],"can":[16,22,69,92,206,238],"be":[17,23,207,239],"detected.":[18],"In":[19,102,128,166],"addition,":[20],"they":[21],"implemented":[24],"as":[25,55,79],"a":[26,95,107,137,151,157,188,193,210,223,270],"black":[27],"box":[28],"solution":[29],"sits":[31],"away":[32],"from":[33],"host":[35,59],"using":[36,197,264],"methods":[37,228],"allow":[39],"rapid":[40],"processing":[41],"of":[42,65,134,180,212,225,261],"incoming":[44,265],"packets":[45,117,266],"without":[46],"need":[48,144],"to":[49,94,130,141,209,241],"examine":[50],"high":[51],"layer":[52],"information":[53,249],"such":[54,136,161],"protocol":[56],"details":[57],"or":[58,88],"profiles.":[60],"However,":[61],"statistical":[63,198],"fingerprint":[64],"traffic":[68,153,194,253],"shift.":[70],"These":[71],"changes,":[72],"caused":[73],"by":[74,247],"various":[75],"site-level":[76],"phenomenon":[77],"(such":[78],"changes":[80],"overall":[82,125],"at":[84],"networked":[86],"site":[87],"even":[89],"system":[90,126,138,246],"updates),":[91],"lead":[93],"significant":[96],"increase":[97],"false":[99],"positive":[100],"rates.":[101],"turn,":[103],"this":[104,167],"effect":[105],"puts":[106],"heavy":[108],"burden":[109],"on":[110,250],"post-detection":[112],"stages":[113],"which":[114],"inspect":[115],"have":[119],"raised":[120],"alarms":[121],"thereby":[122],"reducing":[123],"performance.":[127],"order":[129],"guarantee":[131],"level":[133],"reliability":[135],"is":[139,164],"expected":[140],"provide,":[142],"we":[143,169],"an":[145,162],"autonomous":[146],"mechanism":[147,159],"for":[148,190],"detecting":[149],"when":[150,160,192,251],"valid":[152],"change":[154,195,254],"occurs":[155,196],"self-tuning":[158],"alarm":[163,184],"raised.":[165],"paper,":[168],"explore":[170],"detail":[172],"first":[174],"step":[175],"towards":[176],"automating":[177],"tuning":[179],"systems-the":[183],"generation.":[185],"We":[186,217,256],"present":[187],"scheme":[189],"computing":[191],"analysis":[199,227],"with":[200,220,269],"anomaly":[201],"score":[202],"data.":[203],"This":[204],"method":[205],"adapted":[208],"variety":[211],"anomaly-based":[213],"systems.":[216],"show":[218],"that,":[219],"some":[221],"modification,":[222],"combination":[224],"technical":[226],"(typically":[229],"used":[230,240],"predicting":[232],"verifying":[234],"financial":[235],"market":[236],"data)":[237],"guide":[242],"providing":[248],"occurs.":[255],"also":[257],"discuss":[258],"possibility":[260],"quick":[262],"re-tuning":[263],"collected":[267],"on-line":[268],"noise-resistant":[271],"scheme.":[274]},"counts_by_year":[{"year":2012,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
