{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T14:35:52Z","timestamp":1775745352117,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":22,"publisher":"ACM","license":[{"start":{"date-parts":[[2006,3,21]],"date-time":"2006-03-21T00:00:00Z","timestamp":1142899200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2006,3,21]]},"DOI":"10.1145\/1128817.1128834","type":"proceedings-article","created":{"date-parts":[[2006,5,8]],"date-time":"2006-05-08T21:40:43Z","timestamp":1147124443000},"page":"90-101","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":108,"title":["Measuring intrusion detection capability"],"prefix":"10.1145","author":[{"given":"Guofei","family":"Gu","sequence":"first","affiliation":[{"name":"Georgia Institute of Technology"}]},{"given":"Prahlad","family":"Fogla","sequence":"additional","affiliation":[{"name":"Georgia Institute of Technology"}]},{"given":"David","family":"Dagon","sequence":"additional","affiliation":[{"name":"Georgia Institute of Technology"}]},{"given":"Wenke","family":"Lee","sequence":"additional","affiliation":[{"name":"Georgia Institute of Technology"}]},{"given":"Boris","family":"Skori\u0107","sequence":"additional","affiliation":[{"name":"Philips Research Laboratories, Netherlands"}]}],"member":"320","published-online":{"date-parts":[[2006,3,21]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/319709.319710"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/129837"},{"key":"e_1_3_2_1_4_1","volume-title":"Maftia Project, deliverable 10.","author":"Dacier M.","year":"2005","unstructured":"M. Dacier . Design of an intrusion-tolerant intrusion detection system , Maftia Project, deliverable 10. Available at http:\/\/www.maftia.org\/deliverables\/D10.pdf. 2005 . M. Dacier. Design of an intrusion-tolerant intrusion detection system, Maftia Project, deliverable 10. Available at http:\/\/www.maftia.org\/deliverables\/D10.pdf. 2005."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.1987.232894"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.5555\/882495.884438"},{"key":"e_1_3_2_1_7_1","volume-title":"Results of DARPA 1998 off-line intrusion detection evaluation. Presented at DARPA PI Meeting","author":"Graf I.","year":"1998","unstructured":"I. Graf , R. Lippmann , R. Cunningham , K. K. D. Fried , S. Webster , and M. Zissman . Results of DARPA 1998 off-line intrusion detection evaluation. Presented at DARPA PI Meeting , 15 December 1998 . I. Graf, R. Lippmann, R. Cunningham, K. K. D. Fried, S. Webster, and M. Zissman. Results of DARPA 1998 off-line intrusion detection evaluation. Presented at DARPA PI Meeting, 15 December 1998."},{"key":"e_1_3_2_1_9_1","volume-title":"Signal Detection Theory","author":"Hancock J.","year":"1966","unstructured":"J. Hancock and P. Wintz . Signal Detection Theory . McGraw-Hill , 1966 . J. Hancock and P. Wintz. Signal Detection Theory. McGraw-Hill, 1966."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/32.241771"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/882495.884435"},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the 2000 DARPA Information Survivability Conference and Exposition (DISCEX'00)","author":"Lippmann R. P.","year":"2000","unstructured":"R. P. Lippmann , D. J. Fried , and I. G. etc. Evaluating intrusion detection systems: The 1998 darpa off-line intrusion detection evaluation . In Proceedings of the 2000 DARPA Information Survivability Conference and Exposition (DISCEX'00) , 2000 . R. P. Lippmann, D. J. Fried, and I. G. etc. Evaluating intrusion detection systems: The 1998 darpa off-line intrusion detection evaluation. In Proceedings of the 2000 DARPA Information Survivability Conference and Exposition (DISCEX'00), 2000."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.5555\/647881.737776"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/382912.382923"},{"key":"e_1_3_2_1_16_1","unstructured":"MIT Lincoln Laboratory. 1999 darpa intrusion detection evaluation data set overview. http:\/\/www.ll.mit.edu\/IST\/ideval\/ 2001.  MIT Lincoln Laboratory. 1999 darpa intrusion detection evaluation data set overview. http:\/\/www.ll.mit.edu\/IST\/ideval\/ 2001."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1016\/S1389-1286(99)00112-7"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/TMI.2003.815867"},{"key":"e_1_3_2_1_19_1","volume-title":"Secure Networks Inc.","author":"Ptacek T. H.","year":"1998","unstructured":"T. H. Ptacek and T. N. Newsham . Insertion, evasion, and denial of service: Eluding network intrusion detection. Technical report , Secure Networks Inc. , January 1998 . http:\/\/www.aciri.org\/vern\/Ptacek-Newsham-Evasion-98.ps. T. H. Ptacek and T. N. Newsham. Insertion, evasion, and denial of service: Eluding network intrusion detection. Technical report, Secure Networks Inc., January 1998. http:\/\/www.aciri.org\/vern\/Ptacek-Newsham-Evasion-98.ps."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/32.544350"},{"key":"e_1_3_2_1_21_1","volume-title":"Libwhisker official release v2.1","author":"Puppy R. F.","year":"2004","unstructured":"R. F. Puppy . Libwhisker official release v2.1 , 2004 . Available at http:\/\/www.wiretrip.net\/rfp\/lw.asp. R. F. Puppy. Libwhisker official release v2.1, 2004. Available at http:\/\/www.wiretrip.net\/rfp\/lw.asp."},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of USENIX LISA '99","author":"Roesch M.","year":"1999","unstructured":"M. Roesch . Snort - lightweight intrusion detection for networks . In Proceedings of USENIX LISA '99 , 1999 . M. Roesch. Snort - lightweight intrusion detection for networks. In Proceedings of USENIX LISA '99, 1999."},{"key":"e_1_3_2_1_23_1","volume-title":"May","author":"Strehl A.","year":"2002","unstructured":"A. Strehl . Relationship-based clustering and cluster ensembles for high-dimensional data mining , May 2002 . PhD thesis, The University of Texas at Austin. A. Strehl. Relationship-based clustering and cluster ensembles for high-dimensional data mining, May 2002. PhD thesis, The University of Texas at Austin."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1126\/science.3287615"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-30143-1_11"}],"event":{"name":"Asia CCS06: ACM Symposium on Information, Computer and Communications Security 2006","location":"Taipei Taiwan","acronym":"Asia CCS06","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2006 ACM Symposium on Information, computer and communications security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1128817.1128834","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1128817.1128834","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T15:06:17Z","timestamp":1750259177000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1128817.1128834"}},"subtitle":["an information-theoretic approach"],"short-title":[],"issued":{"date-parts":[[2006,3,21]]},"references-count":22,"alternative-id":["10.1145\/1128817.1128834","10.1145\/1128817"],"URL":"https:\/\/doi.org\/10.1145\/1128817.1128834","relation":{},"subject":[],"published":{"date-parts":[[2006,3,21]]},"assertion":[{"value":"2006-03-21","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}