Efficient Matching Algorithms between Logs and Indicators for Automatic Incident Response System
Author:
Affiliation:
1. Toyo University
2. The University of Tokyo
Publisher
Information Processing Society of Japan
Subject
General Computer Science
Link
https://www.jstage.jst.go.jp/article/ipsjjip/31/0/31_279/_pdf
Reference37 articles.
1. [1] MISP: MISP, available from <https://www.misp-project.org/> (accessed 2022-06-22).
2. [2] Okada, S., Fujiwara, Y., Fujimoto, M., Matsuda, W. and Mitsunaga, T.: Efficient Incident Response System on Shared Cyber Threat Information Using SDN and STIX, 2021 IEEE International Conference on Computing (ICOCO), pp.109-114, IEEE (2021).
3. [3] He, S., Zhu, J., He, P. and Lyu, M.R.: Experience Report: System Log Analysis for Anomaly Detection, 27th IEEE International Symposium on Software Reliability Engineering, ISSRE 2016, pp.207-218, IEEE Computer Society (2016).
4. [4] Svacina, J., Raffety, J., Woodahl, C., Stone, B., Cerný, T., Bures, M., Shin, D., Frajták, K. and Tisnovsky, P.: On Vulnerability and Security Log analysis: A Systematic Literature Review on Recent Trends, RACS'20: International Conference on Research in Adaptive and Convergent Systems, Cerný, T. and Park, J.W. (Eds.), pp.175-180, ACM (2020).
5. [5] Juvonen, A., Sipola, T. and Hämäläinen, T.: Online anomaly detection using dimensionality reduction techniques for HTTP log analysis, Comput. Networks, Vol.91, pp.46-56 (2015).
1.学者识别学者识别
2.学术分析学术分析
3.人才评估人才评估
"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370
www.globalauthorid.com
TOP
Copyright © 2019-2024 北京同舟云网络信息技术有限公司 京公网安备11010802033243号 京ICP备18003416号-3