Taking advantage of unsupervised learning in incident response

被引:1
|
作者
Nila, Constantin [1 ]
Patriciu, Victor [1 ]
机构
[1] Mil Tech Acad Ferdinand I, Comp Sci Dept, Bucharest, Romania
关键词
quick incident response; cybersecurity; machine learning; data mining; dimensionality reduction;
D O I
10.1109/ecai50035.2020.9223163
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper looks at new ways to improve the necessary time for incident response triage operations. By employing unsupervised K-means, enhanced by both manual and automated feature extraction techniques, the incident response team can quickly and decisively extrapolate malicious web requests that concluded to the investigated exploitation. More precisely, we evaluated the benefits of different visualization enhancing methods that can improve feature selection and other dimensionality reduction techniques. Furthermore, early tests of the gross framework have shown that the necessary time for triage is diminished, more so if a hybrid multi-model is employed. Our case study revolved around the need for unsupervised classification of unknown web access logs. However, the demonstrated principals may be considered for other applications of machine learning in the cybersecurity domain.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Taking advantage of the big event
    Holland, M
    [J]. FUTURES, 1997, : 40 - 42
  • [42] Taking advantage of variance on appeal
    Kales, Albert Martin
    [J]. ILLINOIS LAW REVIEW, 1907, 2 (02): : 78 - 98
  • [43] Taking advantage of a pathogen: understanding how a virus alleviates plant stress response
    Rena Gorovits
    Iris Sobol
    Miasser Altaleb
    Henryk Czosnek
    Ghandi Anfoka
    [J]. Phytopathology Research, 1
  • [44] Taking advantage of a pathogen: understanding how a virus alleviates plant stress response
    Gorovits, Rena
    Sobol, Iris
    Altaleb, Miasser
    Czosnek, Henryk
    Anfoka, Ghandi
    [J]. PHYTOPATHOLOGY RESEARCH, 2019, 1 (01)
  • [45] Taking advantage of quorum sensing
    Nunes-Alves, Claudio
    [J]. NATURE REVIEWS MICROBIOLOGY, 2015, 13 (05) : 252 - 252
  • [46] Proposal for taking advantage of whey
    Oba, A. Solis
    Oba, M. M. Solis
    Garcia, O. Teniza
    Casares, R. M. Martinez
    [J]. REVISTA BIO CIENCIAS, 2023, 10
  • [47] Taking advantage of the information economy
    Mallam, P
    [J]. PTC '96 - 18TH ANNUAL PACIFIC TELECOMMUNICATIONS CONFERENCE, PROCEEDINGS, VOLS I AND II, 1996, : 991 - 996
  • [48] TAKING ADVANTAGE OF SEMINARS AND CONFERENCES
    不详
    [J]. MACHINERY AND PRODUCTION ENGINEERING, 1974, 125 (3214): : 1 - 1
  • [49] Taking advantage of turbulent times
    Ferling, Albrecht
    Sternesky, Michael
    [J]. JPT, Journal of Petroleum Technology, 2009, 61 (07):
  • [50] WHOS TAKING ADVANTAGE OF THE ADA
    SCHRAEDER, T
    [J]. PIMA MAGAZINE, 1995, 77 (09): : 12 - 12