Taking advantage of unsupervised learning in incident response

被引:1
|
作者
Nila, Constantin [1 ]
Patriciu, Victor [1 ]
机构
[1] Mil Tech Acad Ferdinand I, Comp Sci Dept, Bucharest, Romania
关键词
quick incident response; cybersecurity; machine learning; data mining; dimensionality reduction;
D O I
10.1109/ecai50035.2020.9223163
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper looks at new ways to improve the necessary time for incident response triage operations. By employing unsupervised K-means, enhanced by both manual and automated feature extraction techniques, the incident response team can quickly and decisively extrapolate malicious web requests that concluded to the investigated exploitation. More precisely, we evaluated the benefits of different visualization enhancing methods that can improve feature selection and other dimensionality reduction techniques. Furthermore, early tests of the gross framework have shown that the necessary time for triage is diminished, more so if a hybrid multi-model is employed. Our case study revolved around the need for unsupervised classification of unknown web access logs. However, the demonstrated principals may be considered for other applications of machine learning in the cybersecurity domain.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Taking Advantage of Multitask Learning for Fair Classification
    Oneto, Luca
    Donini, Michele
    Elders, Amon
    Pontil, Massimiliano
    [J]. AIES '19: PROCEEDINGS OF THE 2019 AAAI/ACM CONFERENCE ON AI, ETHICS, AND SOCIETY, 2019, : 227 - 237
  • [2] Taking advantage of collective knowledge in emergency response systems
    Vivacqua, Adriana S.
    Borges, Marcos R. S.
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2012, 35 (01) : 189 - 198
  • [3] An Unsupervised Feature Learning Approach to Improve Automatic Incident Detection
    Ren, Jimmy S. J.
    Wang, Wei
    Wang, Jiawei
    Liao, Stephen
    [J]. 2012 15TH INTERNATIONAL IEEE CONFERENCE ON INTELLIGENT TRANSPORTATION SYSTEMS (ITSC), 2012, : 172 - 177
  • [4] Taking advantage of the Semantics of a Lesson Graph based on Learning Objects
    Motelet, Olivier
    Baloian, Nelson
    Piwowarski, Benjamin
    Pino, Jose A.
    [J]. ARTIFICIAL INTELLIGENCE IN EDUCATION: BUILDING TECHNOLOGY RICH LEARNING CONTEXTS THAT WORK, 2007, 158 : 459 - +
  • [5] Taking advantage of innovation
    Baily, Martin Neil
    [J]. JOURNAL OF POLICY MODELING, 2014, 36 (04) : 654 - 673
  • [6] TAKING ADVANTAGE OF OPPORTUNITY
    不详
    [J]. WERKSTATTSTECHNIK ZEITSCHRIFT FUR INDUSTRIELLE FERTIGUNG, 1991, 81 (03): : 123 - 124
  • [7] TAKING ADVANTAGE OF ADVERSITY
    DOUGHERTY, RM
    [J]. JOURNAL OF ACADEMIC LIBRARIANSHIP, 1991, 17 (01): : 3 - 3
  • [8] TAKING ADVANTAGE OF ENGINEERS
    KLEIN, S
    [J]. MACHINE DESIGN, 1971, 43 (01) : 76 - &
  • [9] "Taking advantage of emptiness"?
    Viazzo, Pier Paolo
    Zanini, Roberta Clara
    [J]. REVUE DE GEOGRAPHIE ALPINE-JOURNAL OF ALPINE RESEARCH, 2014, 102 (03):
  • [10] TAKING ADVANTAGE OF DISADVANTAGED
    FANTINI, MD
    WEINSTEIN, G
    [J]. TEACHERS COLLEGE RECORD, 1967, 69 (02): : 103 - 114