Adaptive critic design for computer intrusion detection system
Alexander Novokhodko, Donald C. Wunsch, Ci̇han H. Dağli · Proceedings of SPIE, the International Society for Optical Engineering/Proceedings of SPIE · 2001
This paper summarizes ongoing research. A neural network is used to detect a computer system intrusion basing on data from the system audit trail generated by Solaris Basic Security Module. The data have been provided by Lincoln Labs, MIT. The system alerts the human operator, when it encounters suspicious activity logged in the audit trail. To reduce the false alarm rate and accommodate the temporal indefiniteness of moment of attack a reinforcement learning approach is chosen to train the network.