Re: Re: Snort with an expert system

[email protected] 22 Jun 2009 19:47:03 -0000
Newsgroups gmane.comp.security.ids
Message-ID <[email protected]>
Hi,
Coming late into this conversation, but what about using statistical learning filtering instead of an expert system? We have done it using an anomaly detection algorithm we have developed: 

http://eprints.sics.se/3591/ 

(link to paper https://daisy.dsv.su.se/fil/visa?id=24833)

/Tomas
http://www.sics.se