首页> 外文学位 >A multilayer framework to catch data exfiltration.
【24h】

A multilayer framework to catch data exfiltration.

机译:多层框架可捕获数据泄漏。

获取原文
获取原文并翻译 | 示例

摘要

Data exfiltration is the unauthorized leakage of confidential data from a particular system. It is a specific form of intrusion that is particularly hard to catch due to the most common cause: an insider entity who is responsible for the leak. That entity could be a person employed in the organization or a malicious hardware component bought from an unreliable third party. Catching such intrusions, therefore, can be extremely difficult. We describe a framework comprising multiple parameters that are constantly monitored in a system. These parameters can cover the entire stack of the computer architecture, from the hardware up to the application layer. Malicious behavior is detected by different modules monitoring these parameters and an aggregated attack alert is produced if multiple modules detect malicious activity within a short period of time. A more distributed and comprehensive monitoring framework should ensure that designing an attack becomes extremely difficult since an attack must go through multiple detectors present in the system without raising any alarms.
机译:数据泄露是未经授权从特定系统泄漏机密数据。由于最常见的原因,这是一种特殊形式的入侵,尤其难以捕获:内部实体负责泄漏。该实体可以是组织中雇用的人员,也可以是从不可靠的第三方购买的恶意硬件组件。因此,捕获此类入侵可能非常困难。我们描述了一个包含多个参数的框架,这些参数在系统中不断受到监控。这些参数可以覆盖从硬件到应用程序层的整个计算机体系结构堆栈。通过监视这些参数的不同模块可以检测到恶意行为,如果多个模块在短时间内检测到恶意活动,则会生成汇总的攻击警报。更加分散和全面的监视框架应确保设计攻击变得极为困难,因为攻击必须通过系统中存在的多个检测器,而不会引发任何警报。

著录项

  • 作者

    Sharma, Puneet.;

  • 作者单位

    University of Maryland, Baltimore County.;

  • 授予单位 University of Maryland, Baltimore County.;
  • 学科 Computer Science.
  • 学位 M.S.
  • 年度 2013
  • 页码 88 p.
  • 总页数 88
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号