My graduate research was focused on Signature Intrusion Detection Systems (SIDS). One of the inspirations for the project was the advent of the log4j vulnerability. We saw the new detection rules for the SIDS Snort come out in real time. Rules for Snort had to be added reactively, which is one of the limitations of SIDS. This rasied the question of how we could adjust these tools to allow for different modes of scanning. Traditionally SIDS are designed to minimize the amount of benign traffic that gets blocked. In our research, we sought to expand the use case of SIDS through iterative modifications.

In 2023, I presented my paper at the MILCOM Conference in Boston, MA.

The publication can be read here.