Detecting insider threats in software systems using graph models of behavioral paths

HotSoS(2015)

引用 0|浏览7
暂无评分
摘要
Insider threats are a well-known problem, and previous studies have shown that it has a huge impact over a wide range of sectors like financial services, governments, critical infrastructure services and the telecommunications sector. Users, while interacting with any software system, leave a trace of what nodes they accessed and in what sequence. We propose to translate these sequences of observed activities into paths on the graph of the underlying software architectural model. We propose a clustering algorithm to find anomalies in the data, which can be combined with contextual information to confirm as an insider threat.
更多
查看译文
关键词
miscellaneous,path clustering,graph models,insider threats,complexity measures,software architecture,performance measures
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要