Cyber situational awareness through network anomaly detection: state of the art and new approaches

作者: Ivo Friedberg , Florian Skopik , Roman Fiedler

DOI: 10.1007/S00502-015-0287-4

关键词:

摘要: With a major change in the attack landscape, away from well-known vectors towards unique and highly tailored attacks, limitations of common rule- signature-based security systems become more obvious. Novel mechanisms can provide means to extend existing solutions order sophisticated approach. As critical infrastructures get increasingly accessible public networks they show up on attackers’ radars. consequence, establishing cyber situational awareness higher level through incident information sharing is vital for assessing increased risk national space. But legal obligations economical considerations limit motivation companies pursue initiatives. To support governmental initiatives, novel should inherently address limiting factors. One approach, AECID, presented that accounts many intrusion anomaly detection mechanisms; which further provides features privacy-aware awareness.

参考文章(18)
Guichong Li, Nathalie Japkowicz, Lian Yang, Anomaly detection via coupled gaussian kernels canadian conference on artificial intelligence. pp. 343- 349 ,(2012) , 10.1007/978-3-642-30353-1_34
Václav Bartoš, Martin Žádník, Network anomaly detection: comparison and real-time issues autonomous infrastructure management and security. pp. 118- 121 ,(2012) , 10.1007/978-3-642-30633-4_15
Hamad Binsalleeh, Thomas Ormerod, Amine Boukhtouta, Prosenjit Sinha, Amr Youssef, Mourad Debbabi, Lingyu Wang, None, On the analysis of the Zeus botnet crimeware toolkit conference on privacy, security and trust. pp. 31- 38 ,(2010) , 10.1109/PST.2010.5593240
Ivo Friedberg, Florian Skopik, Giuseppe Settanni, Roman Fiedler, Combating advanced persistent threats Computers & Security. ,vol. 48, pp. 35- 57 ,(2015) , 10.1016/J.COSE.2014.09.006
Ying Zhao, Zhigao Zheng, Hong Wen, Bayesian Statistical Inference in Machine Learning Anomaly Detection international conference on communications. pp. 113- 116 ,(2010) , 10.1109/ICCIIS.2010.48
Nadine B. Sarter, David D. Woods, Situation Awareness: A Critical But Ill-Defined Phenomenon The International Journal of Aviation Psychology. ,vol. 1, pp. 45- 57 ,(1991) , 10.1207/S15327108IJAP0101_4
Ya-ling Zhang, Zhao-guo Han, Jiao-xia Ren, A Network Anomaly Detection Method Based on Relative Entropy Theory international symposium on electronic commerce and security. ,vol. 1, pp. 231- 235 ,(2009) , 10.1109/ISECS.2009.174
Jorge L Hernandez-Ardieta, Juan E Tapiador, Guillermo Suarez-Tangil, None, Information sharing models for cooperative cyber defence international conference on cyber conflict. pp. 1- 28 ,(2013)
Varun Chandola, Arindam Banerjee, Vipin Kumar, Anomaly detection: A survey ACM Computing Surveys. ,vol. 41, pp. 15- ,(2009) , 10.1145/1541880.1541882
M. Thottan, Chuanyi Ji, Anomaly detection in IP networks IEEE Transactions on Signal Processing. ,vol. 51, pp. 2191- 2204 ,(2003) , 10.1109/TSP.2003.814797