Knowing the unknown: The hunting loop
نویسندگان
چکیده
There are several ways to improve an organization’s cybersecurity protection against intruders. One of the is proactively hunt for threats, i.e., threat hunting. Threat Hunting empowers organizations detect presence intruders in their environment. It identifies and searches tactics, techniques, procedures (TTP) attackers find them To know what look collected data environment, it required understand attacker's TTPs. An TTPs information usually comes from signatures, indicators, behavior observed intelligence sources. Traditionally, hunting involves analysis logs Indicator Compromise (IOCs) through different tools. However, network security infrastructure devices generate large volumes can be challenging analyze thus leaving gaps detection process. Similarly, very difficult identify IOCs sometimes makes which one major drawbacks traditional processes frameworks. address this issue, intelligent automated using machine learning process, that will plug those before attacker exploit them. This paper aims propose a learning-based threat-hunting model able fill process effectively unknown adversaries by training algorithms via extensive datasets normal system target The comprised five main stages. These Hypotheses Development, Equip, Hunt, Respond Feedback bit ahead models frameworks employing algorithms.
منابع مشابه
Hunting the Unknown - White-Box Database Leakage Detection
Data leakage causes significant losses and privacy breaches worldwide. In this paper we present a white-box data leakage detection system to spot anomalies in database transactions. We argue that our approach represents a major leap forward w.r.t. previous work because: i) it significantly decreases the False Positive Rate (FPR) while keeping the Detection Rate (DR) high; on our experimental da...
متن کاملWhy Risk Matters: Deriving Profit by Knowing the Unknown
This white paper discusses risk and risk management from a nontraditional viewpoint. It argues that the most critical aspect of risk management is an organization’s ability to understand and identify various kinds of risk that it faces. Further, the paper posits that this understanding of types of risk is even more important than the organization’s formal financial or operational plans, or trad...
متن کاملExplaining the Safavid hunting ground Corner and Medallion carpet design, (case study: the Poldi Pezzoli Museum hunting ground Carpet).
Hunting and animal’s combat design of animals in the Safavid era has been reflected in various compositions of carpet designs as they are combined with Floral, Medallion, and Corner and Medallion patterns. One of the significant examples of a hunting ground corner and Medallion carpet are the ones held in the Poldi Pezzoli Museum, Milan. In this carpet, hustling hunting scenes have been depicte...
متن کاملromantic education:reading william wordsworths the prelude in the light of the history of ideas
عصر روشنگری زمان شکل گیری ایده های مدرن تربیتی- آموزشی بود اما تاکید بیش از اندازه ی دوشاخه مهم فلسفی زمان یعنی عقل گرایی و حس گرایی بر دقت و وضوح، انسان عصر روشنگری را نسبت به دیگر تواناییهایش نابینا کرده و موجب به وجود آمدن افرادی تک بعدی شد که افتخارعقلانیتشان، تاکید شان بر تجربه فردی، به مبارزه طلبیدن منطق نیاکانشان وافسون زدایی شان از دنیا وتمام آنچه با حواس پنجگانه قابل درک نبوده و یا در ...
ذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: International Journal of Advanced and Applied Sciences
سال: 2022
ISSN: ['2313-626X', '2313-3724']
DOI: https://doi.org/10.21833/ijaas.2022.01.002