Matches in SemOpenAlex for { <https://semopenalex.org/work/W2549403863> ?p ?o ?g. }
Showing items 1 to 95 of
95
with 100 items per page.
- W2549403863 endingPage "520" @default.
- W2549403863 startingPage "509" @default.
- W2549403863 abstract "In this paper we present a protocol-aware anomaly detection framework specifically designed for back office networks together with a new automatic method for feature selection that allows to dramatically reduce the false positive rate (FPR) without compromising the detection rate (DR). The system monitors SMB and MS-RPC (the main protocols in back office networks) and takes into consideration specific features of SMB such as the presence of file paths, which are noisy, yet contain information necessary to detect some attacks. As a part of the framework we introduce a new method to cut the FPR by carefully building and selecting the right set of features to be monitored. In back office networks this is a challenging task where manual selection requires carefully exploring the network traffic to choose from numerous potential features. Also features need to be resilient to irregularities in the traffic caused by human involvement. Our framework automates selection utilizing two new metrics to determine the ‘quality’ of a feature: stability, i.e. its robustness to false alarms and granularity, i.e. the relative amount of information contained. Our experiments show a significant improvement in FPR-DR trade-off when our framework is used to select features in detection of network-based exploits and malicious file accesses." @default.
- W2549403863 created "2016-11-30" @default.
- W2549403863 creator A5052389888 @default.
- W2549403863 creator A5052646282 @default.
- W2549403863 creator A5091026275 @default.
- W2549403863 date "2016-01-01" @default.
- W2549403863 modified "2023-09-24" @default.
- W2549403863 title "Towards Useful Anomaly Detection for Back Office Networks" @default.
- W2549403863 cites W1504161274 @default.
- W2549403863 cites W1554085250 @default.
- W2549403863 cites W1966809779 @default.
- W2549403863 cites W2074548145 @default.
- W2549403863 cites W2100594342 @default.
- W2549403863 cites W2204970668 @default.
- W2549403863 cites W2494465889 @default.
- W2549403863 cites W2499291430 @default.
- W2549403863 cites W88232515 @default.
- W2549403863 doi "https://doi.org/10.1007/978-3-319-49806-5_30" @default.
- W2549403863 hasPublicationYear "2016" @default.
- W2549403863 type Work @default.
- W2549403863 sameAs 2549403863 @default.
- W2549403863 citedByCount "3" @default.
- W2549403863 countsByYear W25494038632017 @default.
- W2549403863 countsByYear W25494038632019 @default.
- W2549403863 crossrefType "book-chapter" @default.
- W2549403863 hasAuthorship W2549403863A5052389888 @default.
- W2549403863 hasAuthorship W2549403863A5052646282 @default.
- W2549403863 hasAuthorship W2549403863A5091026275 @default.
- W2549403863 hasConcept C104317684 @default.
- W2549403863 hasConcept C111919701 @default.
- W2549403863 hasConcept C124101348 @default.
- W2549403863 hasConcept C138885662 @default.
- W2549403863 hasConcept C142724271 @default.
- W2549403863 hasConcept C148483581 @default.
- W2549403863 hasConcept C154945302 @default.
- W2549403863 hasConcept C162324750 @default.
- W2549403863 hasConcept C165696696 @default.
- W2549403863 hasConcept C177774035 @default.
- W2549403863 hasConcept C185592680 @default.
- W2549403863 hasConcept C187736073 @default.
- W2549403863 hasConcept C204787440 @default.
- W2549403863 hasConcept C2776401178 @default.
- W2549403863 hasConcept C2780385302 @default.
- W2549403863 hasConcept C2780451532 @default.
- W2549403863 hasConcept C38652104 @default.
- W2549403863 hasConcept C41008148 @default.
- W2549403863 hasConcept C41895202 @default.
- W2549403863 hasConcept C55493867 @default.
- W2549403863 hasConcept C63479239 @default.
- W2549403863 hasConcept C71924100 @default.
- W2549403863 hasConcept C739882 @default.
- W2549403863 hasConcept C95922358 @default.
- W2549403863 hasConceptScore W2549403863C104317684 @default.
- W2549403863 hasConceptScore W2549403863C111919701 @default.
- W2549403863 hasConceptScore W2549403863C124101348 @default.
- W2549403863 hasConceptScore W2549403863C138885662 @default.
- W2549403863 hasConceptScore W2549403863C142724271 @default.
- W2549403863 hasConceptScore W2549403863C148483581 @default.
- W2549403863 hasConceptScore W2549403863C154945302 @default.
- W2549403863 hasConceptScore W2549403863C162324750 @default.
- W2549403863 hasConceptScore W2549403863C165696696 @default.
- W2549403863 hasConceptScore W2549403863C177774035 @default.
- W2549403863 hasConceptScore W2549403863C185592680 @default.
- W2549403863 hasConceptScore W2549403863C187736073 @default.
- W2549403863 hasConceptScore W2549403863C204787440 @default.
- W2549403863 hasConceptScore W2549403863C2776401178 @default.
- W2549403863 hasConceptScore W2549403863C2780385302 @default.
- W2549403863 hasConceptScore W2549403863C2780451532 @default.
- W2549403863 hasConceptScore W2549403863C38652104 @default.
- W2549403863 hasConceptScore W2549403863C41008148 @default.
- W2549403863 hasConceptScore W2549403863C41895202 @default.
- W2549403863 hasConceptScore W2549403863C55493867 @default.
- W2549403863 hasConceptScore W2549403863C63479239 @default.
- W2549403863 hasConceptScore W2549403863C71924100 @default.
- W2549403863 hasConceptScore W2549403863C739882 @default.
- W2549403863 hasConceptScore W2549403863C95922358 @default.
- W2549403863 hasLocation W25494038631 @default.
- W2549403863 hasOpenAccess W2549403863 @default.
- W2549403863 hasPrimaryLocation W25494038631 @default.
- W2549403863 hasRelatedWork W1976030966 @default.
- W2549403863 hasRelatedWork W2350338839 @default.
- W2549403863 hasRelatedWork W2785391232 @default.
- W2549403863 hasRelatedWork W2982280075 @default.
- W2549403863 hasRelatedWork W3043149316 @default.
- W2549403863 hasRelatedWork W4206622950 @default.
- W2549403863 hasRelatedWork W4210348654 @default.
- W2549403863 hasRelatedWork W4220865231 @default.
- W2549403863 hasRelatedWork W4295789122 @default.
- W2549403863 hasRelatedWork W4376616984 @default.
- W2549403863 isParatext "false" @default.
- W2549403863 isRetracted "false" @default.
- W2549403863 magId "2549403863" @default.
- W2549403863 workType "book-chapter" @default.