SAQL: A Stream-based Query System for Real-Time Abnormal System Behavior Detection

25 Jun 2018Peng GaoXusheng XiaoDing LiZhichun LiKangkook JeeZhenyu WuChung Hwan KimSanjeev R. KulkarniPrateek Mittal

Recently, advanced cyber attacks, which consist of a sequence of steps that involve many vulnerabilities and hosts, compromise the security of many well-protected businesses. This has led to the solutions that ubiquitously monitor system activities in each host (big data) as a series of events, and search for anomalies (abnormal behaviors) for triaging risky events... (read more)

PDF Abstract

Code


No code implementations yet. Submit your code now

Tasks


Results from the Paper


  Submit results from this paper to get state-of-the-art GitHub badges and help the community compare results to other papers.