PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 14, 2019Proceedings of the Australasian Computer Science Week Multiconference73 citations

Insider Threat Detection with Long Short-Term Memory

View Full Paper
JLJiuming LuRWRaymond K. Wong

Key Points

Key points are not available for this paper at this time.

Abstract

Most organizations these days are increasingly threatened by malicious insiders. The traditional cybersecurity system uses historical logs to investigate/prevent attacks from outside a company. However, for insider threats, new models and techniques are required to differentiate normal behaviour from malicious acts. This paper proposes a system, called Insider Catcher, that bases on a deep neural network with Long Short-Term Memory (LSTM) to model system logs as a natural structured sequence. Our system captures patterns that indicate users' normal usage behaviour to differentiate normal behaviour from malicious acts. Experiments show the superior performance of the proposed system over the existing log-based anomaly detection strategies. This is particularly for real-time online cases.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Lu et al. (2019) studied this question.

synapsesocial.com/papers/6a2042a6519d41c0cedf613fhttps://doi.org/10.1145/3290688.3290692
Ask AI
Helpful
Bookmark
Share
View Full Paper