Big knowledge-based semantic correlation for detecting slow and low-level advanced persistent threats

Abstract Targeted cyber attacks, which today are known as Advanced Persistent Threats (APTs), use low and slow patterns to bypass intrusion detection and alert correlation systems. Since most of the attack detection approaches use a short time-window, the slow APTs abuse this weakness to escape from...

Description complète

Enregistré dans:
Détails bibliographiques
Auteurs principaux: Amir Mohammadzade Lajevardi, Morteza Amini
Format: article
Langue:EN
Publié: SpringerOpen 2021
Sujets:
Accès en ligne:https://doaj.org/article/b2351d12c981481ab9da03e70a252204
Tags: Ajouter un tag
Pas de tags, Soyez le premier à ajouter un tag!