Showing 2024Show all
2 papers · 1 filter
cs.CR2024
Labeling NIDS Rules with MITRE ATT&CK Techniques: Machine Learning vs. Large Language Models
Nir Daniel, Florian Klaus Kaiser, Shay Giladi +6
Analysts in Security Operations Centers (SOCs) are often occupied with time-consuming investigations of alerts from Network Intrusion Detection Systems (NIDS). Many NIDS rules lack…
cs.CR2024
Observability and Incident Response in Managed Serverless Environments Using Ontology-Based Log Monitoring
Lavi Ben-Shimol, Edita Grolman, Aviad Elyashar +7
In a fully managed serverless environment, the cloud service provider is responsible for securing the cloud infrastructure, thereby reducing the operational and maintenance efforts…