This paper presents a taxonomy of anomaly detection techniques that is then used to survey and classify a number of research prototypes and commercial products. Commercial products and solutions based anomaly detection techniques are beginning to establish themselves in mainstream security solutions alongside firewalls, intrusion prevention systems and network monitoring solutions. These solutions are focused mainly on network-based anomaly detection, thus creating a new industry buzzword that describes it: Network Behavior Analysis. This classification is used predictably, pointing towards a number of areas of future research in the field of anomaly detection.
Published in:
Convergence and Hybrid Information Technology, 2008. ICHIT '08. International Conference on
Date of Conference: 28-30 Aug. 2008