User behavior-based semi-supervised network service host threat detection.

Fuxi Wang, Jiajia Cui, Jun Yang, Xianggen Wang,Biao Leng

ITCC(2023)

引用 0|浏览1
暂无评分
摘要
In recent years, internal threats have occurred frequently and become the main factor of network security threats.However, due to the hidden characteristics of internal threats, it is difficult to detect them by methods based on specific conditions.At present,most of the detection technologies based on user behavior rely on expert knowledge and require human to determine the threshold model parameters,which cannot realize automatic learning of the system,and it is difficult to find abnormal behaviors that deliberately hide behavior characteristics.For the problem of internal threat detection,the semi supervised network service host abnormal behavior monitoring method uses specific triggered security events as positive samples to establisha multi-dimensional feature statistical threshold model,and uses intelligent algorithms to model the threat behavior patterns that have occurred in the network service host,then finds out all risk users with similar behavior patterns, and realizes the prediction of network abnormal behavior,so as to detect the internal threats of the network.
更多
查看译文
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要