Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
My Menu
Saved Items

Network attack detection and defense – Manifesto of the Dagstuhl Perspective Workshop, March 2nd–6th, 2008

Georg Carle1, Falko Dressler2, Richard A. Kemmerer3, Hartmut KoenigContact Information, Christopher Kruegel5 and Pavel Laskov6

(1)  TU Muenchen, Munich, Germany
(2)  University Erlangen-Nuremberg, Erlangen, Germany
(3)  University of California, Santa Barbara, CA, USA
(4)  BTU Cottbus, LS RNKS, PF 101344, 03013 Cottbus, Germany, Germany
(5)  Technical University of Vienna, Vienna, Austria
(6)  Fraunhofer Institute Berlin, Berlin, Germany

Published online: 24 February 2009

Abstract  This manifesto is the result of the Perspective Workshop Network Attack Detection and Defense held in Schloss Dagstuhl (Germany) from March 2nd–6th, 2008. The participants of the workshop represent researchers from Austria, France, Norway, the Switzerland, the United States, and Germany who work actively in the field of intrusion detection and network monitoring. The workshop attendee’s opinion was that intrusion detection and flow analysis, which have been developed as complementary approaches for the detection of network attacks, should more strongly combine event detection and correlation techniques to better meet future challenges in future reactive security.
The workshop participants considered various perspectives to envision future network attack detection and defense. The following topics are seen as important in the future: the development of early warning systems, the introduction of situation awareness, the improvement of measurement technology, taxonomy of attacks, the application of intrusion and fraud detection for web services, and anomaly detection.
In order to realize those visions the state of the art, the challenges, and research priorities were identified for each topic by working groups. The outcome of the discussion is summarized in working group papers which are published in the workshop proceedings. The papers were compiled by the editors to this manifesto.

Keywords  Intrusion detection - Network monitoring - Early warning systems - Situation awareness - Measurement requirements


Contact Information Hartmut Koenig
Email: koenig@informatik.tu-cottbus.de


Export this article
Export this article as RIS | Text
 
Remote Address: 38.107.191.111 • Server: mpweb16
HTTP User Agent: CCBot/1.0 (+http://www.commoncrawl.org/bot.html)