On-line Shared Platform Evaluation Framework for Advanced Persistent Threats

被引:0
|
作者
Sohn, Dongsik [1 ]
Lee, Taejin [2 ]
Kwak, Jin [3 ]
机构
[1] Ajou Univ, Dept Comp Engn, ISAA Lab, Suwon, South Korea
[2] Hoseo Univ, Dept Comp Engn, Cheonan, South Korea
[3] Ajou Univ, Dept Cyber Secur, Suwon, South Korea
基金
新加坡国家研究基金会;
关键词
APT Evaluation; APT detection; Intrusion detection; APT evaluation framework; Detection Performance; BOTNET; FLOW;
D O I
10.3837/tiis.2019.05.021
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Advanced persistent threats (APTs) are constant attacks of specific targets by hackers using intelligent methods. All current internal infrastructures are constantly subject to APT attacks created by external and unknown malware. Therefore, information security officers require a framework that can assess whether information security systems are capable of detecting and blocking APT attacks. Furthermore, an on-line evaluation of information security systems is required to cope with various malicious code attacks. A regular evaluation of the information security system is thus essential. In this paper, we propose a dynamic updated evaluation framework to improve the detection rate of internal information systems for malware that is unknown to most (over 60 %) existing static information security system evaluation methodologies using non-updated unknown malware.
引用
收藏
页码:2610 / 2628
页数:19
相关论文
共 50 条
  • [41] Developing Secure Products in the Age of Advanced Persistent Threats
    Baize, Eric
    IEEE SECURITY & PRIVACY, 2012, 10 (03) : 88 - 92
  • [42] Hybrid Analysis Technique to detect Advanced Persistent Threats
    Chakkaravarthy, S. Sibi
    Vaidehi, V.
    Rajesh, P.
    INTERNATIONAL JOURNAL OF INTELLIGENT INFORMATION TECHNOLOGIES, 2018, 14 (02) : 59 - 76
  • [43] Identifying Vulnerabilities of Advanced Persistent Threats: An Organizational Perspective
    Nicho, Mathew
    Khan, Shafaq
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2014, 8 (01) : 1 - 18
  • [44] An adaptive defense mechanism to prevent advanced persistent threats
    Xie, Yi-xi
    Ji, Li-xin
    Li, Ling-shu
    Guo, Zehua
    Baker, Thar
    CONNECTION SCIENCE, 2021, 33 (02) : 359 - 379
  • [45] Beyond Blacklisting: Cyberdefense in the Era of Advanced Persistent Threats
    Beuhring, Aaron
    Salous, Kyle
    IEEE SECURITY & PRIVACY, 2014, 12 (05) : 90 - 93
  • [46] APTHunter: Detecting Advanced Persistent Threats in Early Stages
    Mahmoud, Moustafa
    Mannan, Mohammad
    Youssef, Amr
    DIGITAL THREATS: RESEARCH AND PRACTICE, 2023, 4 (01):
  • [47] The Influences of Feature Sets on the Detection of Advanced Persistent Threats
    Hofer-Schmitz, Katharina
    Kleb, Ulrike
    Stojanovic, Branka
    ELECTRONICS, 2021, 10 (06) : 1 - 22
  • [48] An On-line Reliability Emulation Framework
    Mercati, Pietro
    Bartolini, Andrea
    Paterna, Francesco
    Benini, Luca
    Rosing, Tajana Simunic
    2014 12TH IEEE INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (EUC 2014), 2014, : 334 - 339
  • [49] Advanced on-line multinip calender
    Yamazaki, Hidehiko
    Linja, Juha
    Kami Pa Gikyoshi/Japan Tappi Journal, 2007, 61 (11): : 14 - 21
  • [50] Channel Choice via On-Line Platform
    Gilbert, Stephen M.
    Hotkar, Parshuram
    Liu, Chuanjun
    PRODUCTION AND OPERATIONS MANAGEMENT, 2024, 33 (06) : 1373 - 1392