Automated root cause identification of security alerts: Evaluation in a SaaS Cloud

Future Generation Computer Systems(2016)

引用 38|浏览35
暂无评分
摘要
The analysis of the security alerts collected during the system operations is a crucial task to initiate effective responses against attacks and intentional system misuse. A variety of monitors are today available to generate security alerts, such as intrusion detection systems, network audit, vulnerability scans, and event logs. While the amount of alerts generated by the security monitors represents a goldmine of information, the ever-increasing volume and heterogeneity of the collected alerts pose a major threat to timely security analysis and forensic activities conducted by the operations team.
更多
查看译文
关键词
Security alerts,Term weighting,Conceptual clustering,Decision tree,Root cause,SaaS Cloud
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要