Testing Intrusion detection systems
Top Cited Papers
- 1 November 2000
- journal article
- Published by Association for Computing Machinery (ACM) in ACM Transactions on Information and System Security
- Vol. 3 (4) , 262-294
- https://doi.org/10.1145/382912.382923
Abstract
In 1998 and again in 1999, the Lincoln Laboratory of MIT conducted a comparative evaluation of intrusion detection systems (IDSs) developed under DARPA funding. While this evaluation represents a significant and monumental undertaking, there are a number of issues associated with its design and execution that remain unsettled. Some methodologies used in the evaluation are questionable and may have biased its results. One problem is that the evaluators have published relatively little concerning some of the more critical aspects of their work, such as validation of their test data. The appropriateness of the evaluation techniques used needs further investigation. The purpose of this article is to attempt to identify the shortcomings of the Lincoln Lab effort in the hope that future efforts of this kind will be placed on a sounder footing. Some of the problems that the article points out might well be resolved if the evaluators were to publish a detailed description of their procedures and the rationale that led to their adoption, but other problems would clearly remain./par>Keywords
This publication has 8 references indexed in Scilit:
- State of the Practice of Intrusion Detection TechnologiesPublished by Defense Technical Information Center (DTIC) ,2000
- Bro: a system for detecting network intruders in real-timeComputer Networks, 1999
- Testing and evaluating computer intrusion detection systemsCommunications of the ACM, 1999
- A software platform for testing intrusion detection systemsIEEE Software, 1997
- A methodology for testing intrusion detection systemsIEEE Transactions on Software Engineering, 1996
- Packets found on an internetACM SIGCOMM Computer Communication Review, 1993
- Measuring the Accuracy of Diagnostic SystemsScience, 1988
- Review of the ARPA Speech Understanding ProjectThe Journal of the Acoustical Society of America, 1977