Multi-agent system for APT detection

Publikation: Beitrag in Buch/Bericht/KonferenzbandKonferenzbeitragBegutachtung

Abstract

Advanced Persistent Threats (APTs) are targeted cyber attacks committed over a long period of time by highly skilled attackers. The ever increasing number of successful attacks indicates that classical network protection solutions (firewalls, Intrusion Detections Systems, proxies etc.) are no longer sufficient. Therefore, in this paper we propose a new system that combines multiples approaches using advanced aggregation techniques to achieve a better detection performance. We also test the system on real data from a small corporate network, and show that our system is able to attain a high probability of detection to probability of false alarm ratio.

OriginalspracheEnglisch
TitelProceedings - IEEE 25th International Symposium on Software Reliability Engineering Workshops, ISSREW 2014
Herausgeber (Verlag)Institute of Electrical and Electronics Engineers Inc.
Seiten401-406
Seitenumfang6
ISBN (elektronisch)9781479973774
DOIs
PublikationsstatusVeröffentlicht - 12 Dez. 2014
Veranstaltung25th IEEE International Symposium on Software Reliability Engineering Workshops, ISSREW 2014 - Naples, Italien
Dauer: 3 Nov. 20146 Nov. 2014

Publikationsreihe

NameProceedings - IEEE 25th International Symposium on Software Reliability Engineering Workshops, ISSREW 2014

Konferenz

Konferenz25th IEEE International Symposium on Software Reliability Engineering Workshops, ISSREW 2014
Land/GebietItalien
OrtNaples
Zeitraum3/11/146/11/14

Fingerprint

Untersuchen Sie die Forschungsthemen von „Multi-agent system for APT detection“. Zusammen bilden sie einen einzigartigen Fingerprint.

Dieses zitieren