International Journal of Advances in Electronics and Computer Science ( IJAECS )
A highly rated peer reviewed monthly International Journal
Editor-in-Chief : Dr. P. Suresh
Contact Person : Technical Editor
Contact Mail : [email protected]  
Current Issue : Volume-11,Issue-2  ( Feb, 2024 ) View More
Journal Impact Factor : 2.68 View More

Journal Info
Publisher:IRAJ
ISSN (p): 2394-2835
Issues /Year :12
Stay up-to-date
Register your interests and receive email alerts tailored to your needs
Follow us
facebook twitter linked in

Paper Detail


Paper Title
Cyber Threat Hunting With Bag of Terms

Abstract
The goal of this paper is to address these two challenges by leveraging recent advancements in machine learning and, specifically, natural language processing. We propose a new framework called continuous bag of terms and time (CBoTT) to enable cybersecurity analysts to process large volumes of logs containing text-based process audits and determine if there are any processes that pose security risks. Our framework is an extension of the popular continuous-bagof- words approach and enables us to identify the processes that should be investigated with respect to not just what they do, but also when they are executed. The results of our analyses for three different injection schemes show that the CBoTT framework can identify anomalies at an average percentile range of 1.82 to 6.46. This is an improvement compared to the benchmark models, which can detect anomalies at an average percentile range of 3.25 to 80.92. Overall, the CBoTT framework demonstrates superior performance compared to the benchmark models. Keywords - Threat Hunting, Log Analysis, Anomaly Detection


Author - Varol Kayhan, Shivendu Shivendu, Manish Agrawal

Published : Volume-10,Issue-8  ( Aug, 2023 )


DOIONLINE Number - IJAECS-IRAJ-DOIONLINE-20124   View Here

| PDF |
Viewed - 9
| Published on 2023-11-30
   
   
PAST ISSUES
Volume-11,Issue-1  ( Jan, 2024 )
Volume-10,Issue-12  ( Dec, 2023 )
Volume-10,Issue-11  ( Nov, 2023 )
Volume-10,Issue-10  ( Oct, 2023 )
Volume-10,Issue-9  ( Sep, 2023 )
Volume-10,Issue-8  ( Aug, 2023 )
Volume-10,Issue-7  ( Jul, 2023 )
Volume-10,Issue-6  ( Jun, 2023 )
Volume-10,Issue-5  ( May, 2023 )
Volume-10,Issue-4  ( Apr, 2023 )
Journal Indexed