This book constitutes the refereed proceedings of the 8th International Symposium on Recent Advances in Intrusion Detection held in September 2005. The 15 revised full papers and two practical experience reports were carefully reviewed and selected from 83 submissions. The papers are organized in topical sections on worm detection and containment, anomaly detection, intrusion prevention and response, intrusion detection based on system calls and network-based, as well as intrusion detection in mobile and wireless networks.
Worm Detection and Containment (I).- Virtual Playgrounds for Worm Behavior Investigation.- Empirical Analysis of Rate Limiting Mechanisms.- Anomaly Detection.- COTS Diversity Based Intrusion Detection and Application to Web Servers.- Behavioral Distance for Intrusion Detection.- Intrusion Prevention and Response.- FLIPS: Hybrid Adaptive Intrusion Prevention.- Towards Software-Based Signature Detection for Intrusion Prevention on the Network Card.- Defending Against Injection Attacks Through Context-Sensitive String Evaluation.- System Call-Based Intrusion Detection.- Improving Host-Based IDS with Argument Abstraction to Prevent Mimicry Attacks.- On Random-Inspection-Based Intrusion Detection.- Environment-Sensitive Intrusion Detection.- Worm Detection and Containment (II).- Polymorphic Worm Detection Using Structural Information of Executables.- Anomalous Payload-Based Worm Detection and Signature Generation.- Network-Based Intrusion Detection.- On Interactive Internet Traffic Replay.- Interactive Visualization for Network and Port Scan Detection.- A Fast Static Analysis Approach to Detect Exploit Code Inside Network Flows.- Mobile and Wireless Networks.- Sequence Number-Based MAC Address Spoof Detection.- A Specification-Based Intrusion Detection Model for OLSR.