Common Intrusion Detection Framework (CIDF)
- http://gost.isi.edu/cidf/
- Aims to develop protocols and application programming interfaces so that intrusion detection research projects can share information and resources and so that intrusion detection components can be reused in other systems.
Computer immune systems (University of New Mexico)
- http://www.cs.unm.edu/~immsec/
- Four examples of how we are applying ideas from immunology to today's computer security problems are a host based intrusion-detection method, a network based intrusion-detection system, a distributable change-detection algorithm, and a method for intentionally introducing diversity to reduce vulnerability.
Intrusion Detection User Group
- http://idug.cryptojail.net
- A group mailing focusing on security information management, intrusion response, intrusion detection, intrusion prevention, intrusion management and honeynets/honeypots.
Intrusion Detection in Columbia University
- http://www.cs.columbia.edu/ids/
- This project is a data-mining based approach to detecting intruders in computer systems. The project approaches the intrusion detection problem from a data-mining perspective. Large quantities of data are collected from the system and analyzed to build models of normal behavior and intrusion behavior. These models are evaluated on data collected in real time to detect intruders.
Intrusion detection projects at UC Davis
- http://seclab.cs.ucdavis.edu/
- Anomaly Detection in Database Systems, Common Intrusion Detection Framework, Intrusion Detection and Isolation Protocol / IDIP, Intrusion Detection for Large Networks, Misuse Detection and Workshop for Intrusion Detection and Response Data Sharing.
Minnesota Intrusion Detection System (MINDS)
- http://www.cs.umn.edu/research/MINDS/
- Research project focused on the development of high-performance data mining algorithms and tools that will provide support required to analyze the massive data sets generated by various processes that monitor computing and information systems.
Recent Advances in Intrusion Detection Symposium 2004
- http://raid04.eurecom.fr
- International Symposium on Recent Advances in Intrusion Detection. Held in conjunction with ESORICS 2004, September 15-17, 2004. The RAID International Symposium series is intended to advance the field of intrusion detection by promoting the exchange of ideas on a broad range of topics, bringing together leading experts from academia, government, and industry to discuss state-of-the-art intrusion detection technologies and issues from research and commercial perspectives.
ResearchIndex, IDS section
- http://citeseer.ist.psu.edu/Security/IntrusionDetection/
- ResearchIndex is a scientific literature digital library that aims to improve the dissemination and feedback of scientific literature, and to provide improvements in functionality, usability, availability, cost, comprehensiveness, efficiency, and timeliness.
Survivability Research and Analysis (CERT)
- http://www.cert.org/nav/index_purple.html
- Research focuses on methods of improving the technical approach of identifying and preventing security flaws, limiting the damage from attacks, and ensuring that systems continue to provide essential services despite of compromises or failures.
Thor
- http://thor.cryptojail.net
- Research project that utilizes network attack variations to make more precise statements about the detection capabilities of an IDS.