On-line Shared Platform Evaluation Framework for Advanced Persistent Threats

被引:0
|
作者
Sohn, Dongsik [1 ]
Lee, Taejin [2 ]
Kwak, Jin [3 ]
机构
[1] Ajou Univ, Dept Comp Engn, ISAA Lab, Suwon, South Korea
[2] Hoseo Univ, Dept Comp Engn, Cheonan, South Korea
[3] Ajou Univ, Dept Cyber Secur, Suwon, South Korea
基金
新加坡国家研究基金会;
关键词
APT Evaluation; APT detection; Intrusion detection; APT evaluation framework; Detection Performance; BOTNET; FLOW;
D O I
10.3837/tiis.2019.05.021
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Advanced persistent threats (APTs) are constant attacks of specific targets by hackers using intelligent methods. All current internal infrastructures are constantly subject to APT attacks created by external and unknown malware. Therefore, information security officers require a framework that can assess whether information security systems are capable of detecting and blocking APT attacks. Furthermore, an on-line evaluation of information security systems is required to cope with various malicious code attacks. A regular evaluation of the information security system is thus essential. In this paper, we propose a dynamic updated evaluation framework to improve the detection rate of internal information systems for malware that is unknown to most (over 60 %) existing static information security system evaluation methodologies using non-updated unknown malware.
引用
收藏
页码:2610 / 2628
页数:19
相关论文
共 50 条
  • [21] Advanced Persistent Threats in Autonomous Driving
    Kant K.
    Performance Evaluation Review, 2020, 47 (04): : 25 - 28
  • [22] Detection of previously unknown Advanced Persistent Threats through Visual Analytics with the MASFAD framework
    Nikolov, Georgi
    Mees, Wim
    2023 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS, ICMCIS, 2023,
  • [23] An Exploration on Advanced Persistent Threats in Biocybersecurity and Cyberbiosecurity
    Palmer, Xavier-Lewis
    Potter, Lucas
    Karahan, Saltuk
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2022), 2022, : 532 - 535
  • [24] Combating Advanced Persistent Threats: Challenges and Solutions
    Wang, Yuntao
    Liu, Han
    Li, Zhendong
    Su, Zhou
    Li, Jiliang
    IEEE NETWORK, 2024, 38 (06): : 324 - 333
  • [25] Hidden Markov models for advanced persistent threats
    Brogi G.
    Di Bernardino E.
    International Journal of Security and Networks, 2019, 14 (04) : 181 - 190
  • [26] Mitigating Exploits, Rootkits and Advanced Persistent Threats
    Durham, David
    2014 IEEE HOT CHIPS 26 SYMPOSIUM (HCS), 2014,
  • [27] Dimensions of 'Socio' Vulnerabilities of Advanced Persistent Threats
    Nicho, Mathew
    McDermott, Christopher D.
    2019 27TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), 2019, : 521 - 525
  • [28] A novel approach for detecting advanced persistent threats
    Al-Saraireh, Jaafer
    Masarweh, Ala'
    EGYPTIAN INFORMATICS JOURNAL, 2022, 23 (04) : 45 - 55
  • [29] Targeted Cyberattacks: A Superset of Advanced Persistent Threats
    Sood, Aditya K.
    Enbody, Richard J.
    IEEE SECURITY & PRIVACY, 2013, 11 (01) : 54 - 61
  • [30] On-line distance learning platform
    Ramirez, Sergio
    Rosales, Hugo
    Trelles, Oswaldo
    WEBIST 2007: PROCEEDINGS OF THE THIRD INTERNATIONAL CONFERENCE ON WEB INFORMATION SYSTEMS AND TECHNOLOGIES, VOL SEBEG/EL: SOCIETY, E-BUSINESS AND E-GOVERNMENT, E-LEARNING, 2007, : 500 - +