Snort mailing list archives

Re: [Ask for help] Anomaly-detection Techniques


From: Joel Esler <jesler () sourcefire com>
Date: Tue, 11 Dec 2012 22:52:48 -0500

On Dec 11, 2012, at 10:29 PM, Hai Minh Nguyen <lightsea90 () gmail com> wrote:

Hi all,

I have an assignment requiring me to integrate an anomaly-detection component  to Snort, based on some techniques 
like SPADE, PHAD, NETAD, ADAM, LERAD...

Anybody have documents describing the techniques above, about  theoretical basis, algorithm... and performance. If 
you have source code of these, could you share it to me?


Thanks a lot :)

P/s: this is my first post in this mail list. If there is something wrong, please forgive me :D

It's pretty standard that we don't help people do their homework.  If you have specific questions about particular 
functions within Snort, we can answer those, but this is your assignment.

--
Joel Esler
Senior Research Engineer, VRT
OpenSource Community Manager
Sourcefire

------------------------------------------------------------------------------
LogMeIn Rescue: Anywhere, Anytime Remote support for IT. Free Trial
Remotely access PCs and mobile devices and provide instant support
Improve your efficiency, and focus on delivering more value-add services
Discover what IT Professionals Know. Rescue delivers
http://p.sf.net/sfu/logmein_12329d2d
_______________________________________________
Snort-devel mailing list
Snort-devel () lists sourceforge net
https://lists.sourceforge.net/lists/listinfo/snort-devel
Archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel

Please visit http://blog.snort.org for the latest news about Snort!

Current thread: