<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Talkwards &#187; intrusion detection</title>
	<atom:link href="http://www.talkwards.com/tag/intrusion-detection/feed" rel="self" type="application/rss+xml" />
	<link>http://www.talkwards.com</link>
	<description>Advancing Talkwards...</description>
	<lastBuildDate>Sat, 03 Sep 2011 16:33:28 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Using Statistical Analysis to Create Intrusion Detection</title>
		<link>http://www.talkwards.com/2008/10/using-statistical-analysis-to-create-intrusion-detection</link>
		<comments>http://www.talkwards.com/2008/10/using-statistical-analysis-to-create-intrusion-detection#comments</comments>
		<pubDate>Wed, 01 Oct 2008 22:00:44 +0000</pubDate>
		<dc:creator>Hoakz</dc:creator>
				<category><![CDATA[Computer Applications and Programs]]></category>
		<category><![CDATA[Computer Operating Systems]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[GNU/Linux]]></category>
		<category><![CDATA[intrusion detection]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.hoakz.com/blog/?p=231</guid>
		<description><![CDATA[Professor Avishai Wool presents a system that protects GNU/Linux machines from intrusion and malicious program code by using statistical analysis and policy files defining a programs normal behavior, and if that program deviates from said behavior the system stops it. Since the analysis is hooked into standard GNU/Linux build tools and uses the source code [...]]]></description>
			<content:encoded><![CDATA[<p>Professor Avishai Wool presents a system that protects GNU/Linux machines from intrusion and malicious program code by using statistical analysis and policy files defining a programs normal behavior, and if that program deviates from said behavior the system stops it.</p>
<p>Since the analysis is hooked into standard GNU/Linux build tools and uses the source code to derive the policy the system is said to guarantee zero false positives.  A system of this type is cited to be able to perform protection from threats long before traditional anti virus solutions has categorized them, and with far less penalty to system performance.</p>
<p>Here&#8217;s a list of links for further reading:</p>
<ul>
<li><a href="http://www.sciencedaily.com/releases/2008/09/080909111037.htm" target="_blank">http://www.sciencedaily.com/releases/2008/09/080909111037.htm</a></li>
<li><a href="http://ols.fedoraproject.org/OLS/Reprints-2008/bencohen-reprint.pdf" target="_blank">http://ols.fedoraproject.org/OLS/Reprints-2008/bencohen-reprint.pdf</a></li>
</ul>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fwww.talkwards.com%2F2008%2F10%2Fusing-statistical-analysis-to-create-intrusion-detection&amp;title=Using%20Statistical%20Analysis%20to%20Create%20Intrusion%20Detection" id="wpa2a_2"><img src="http://www.talkwards.com/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.talkwards.com/2008/10/using-statistical-analysis-to-create-intrusion-detection/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

