{"id":"W2147808388","doi":"10.1145/1384117.1384137","title":"A methodology for designing accurate anomaly detection systems","year":2007,"lang":"en","type":"article","venue":"","topic":"Network Security and Intrusion Detection","field":"Computer Science","cited_by":9,"is_retracted":false,"has_abstract":true,"ca_institutions":"Carleton University","funders":"Natural Sciences and Engineering Research Council of Canada; Mitacs; National Science Foundation","keywords":"Anomaly detection; Computer science; Generalization; False positive paradox; Heuristics; Key (lock); Data mining; Anomaly (physics); Artificial intelligence; Intrusion detection system; Machine learning; Computer security; Mathematics","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.002438853,0.00008435657,0.0001237093,0.0001398703,0.0002023976,0.0001102849,0.0002550396,0.0001025194,0.000005582151],"category_scores_gemma":[0.0001092835,0.00007549171,0.00005474343,0.0003439026,0.00001452538,0.0003982117,0.00005825139,0.00008612635,0.00001677186],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.00003984736,"about_ca_system_score_gemma":0.00001512693,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.00009790588,"about_ca_topic_score_gemma":0.0001276345,"domain_scores_codex":[0.9989905,0.0001321332,0.0002354421,0.0002666166,0.00009567907,0.0002796019],"domain_scores_gemma":[0.9988775,0.0006555055,0.00009395894,0.0002106153,0.0001016208,0.00006080537],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0001802922,0.00004942139,0.00005946084,0.00005640728,0.00004782565,0.00001057218,0.0007967273,0.001760877,0.1978703,0.1788985,0.0007601561,0.6195094],"study_design_scores_gemma":[0.0004919577,0.0005662186,0.0003994154,0.0000152292,0.00001024251,0.0001410347,0.0001349786,0.6050717,0.3604566,0.007095248,0.02534024,0.0002770949],"study_design_candidate":"design_other","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.01302679,0.00009840712,0.9833778,0.00005902513,0.001742951,0.0002771099,1.648623e-7,0.0002727555,0.001144995],"genre_scores_gemma":[0.7788471,0.000004776427,0.2205089,0.0001492809,0.0002239859,0.00002350204,3.03666e-7,0.00000520822,0.0002369572],"genre_candidate":"methods","genre_consensus":null,"teacher_disagreement_score":0.7658203,"threshold_uncertainty_score":0.3078463,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.08869549839364366,"score_gpt":0.317825516122926,"score_spread":0.2291300177292824,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}