Multi-agent system for APT detection

Résultats de recherche: Chapitre dans un livre, un rapport, des actes de conférencesContribution à une conférenceRevue par des pairs

Résumé

Advanced Persistent Threats (APTs) are targeted cyber attacks committed over a long period of time by highly skilled attackers. The ever increasing number of successful attacks indicates that classical network protection solutions (firewalls, Intrusion Detections Systems, proxies etc.) are no longer sufficient. Therefore, in this paper we propose a new system that combines multiples approaches using advanced aggregation techniques to achieve a better detection performance. We also test the system on real data from a small corporate network, and show that our system is able to attain a high probability of detection to probability of false alarm ratio.

langue originaleAnglais
titreProceedings - IEEE 25th International Symposium on Software Reliability Engineering Workshops, ISSREW 2014
EditeurInstitute of Electrical and Electronics Engineers Inc.
Pages401-406
Nombre de pages6
ISBN (Electronique)9781479973774
Les DOIs
étatPublié - 12 déc. 2014
Evénement25th IEEE International Symposium on Software Reliability Engineering Workshops, ISSREW 2014 - Naples, Italie
Durée: 3 nov. 20146 nov. 2014

Série de publications

NomProceedings - IEEE 25th International Symposium on Software Reliability Engineering Workshops, ISSREW 2014

Une conférence

Une conférence25th IEEE International Symposium on Software Reliability Engineering Workshops, ISSREW 2014
Pays/TerritoireItalie
La villeNaples
période3/11/146/11/14

Empreinte digitale

Examiner les sujets de recherche de « Multi-agent system for APT detection ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation