Concepedia

Publication | Closed Access

POSEIDON: a 2-tier Anomaly-based Network Intrusion Detection System

103

Citations

24

References

2006

Year

Abstract

We present POSEIDON, a new anomaly-based network intrusion detection system. POSEIDON is payload-based, and has a two-tier architecture: the first stage consists of a self-organizing map, while the second one is a modified PAYL system. Our benchmarks on the 1999 DARPA data set show a higher detection rate and lower number of false positives than PAYL and PHAD

References

YearCitations

Page 1