4 papers
CAM-LDS: Cyber Attack Manifestations for Automatic Interpretation of System Logs and Security Alerts
Max Landauer, Wolfgang Hotwagner, Thorina Boenke +2
Log data are essential for intrusion detection and forensic investigations. However, manual log analysis is tedious due to high data volumes, heterogeneous event formats, and unstr…
Resource-Aware Deployment Optimization for Collaborative Intrusion Detection in Layered Networks
André GarcÃa Gómez, Ines Rieger, Wolfgang Hotwagner +4
Collaborative Intrusion Detection Systems (CIDS) are increasingly adopted to counter cyberattacks, as their collaborative nature enables them to adapt to diverse scenarios across h…
AttackMate: Realistic Emulation and Automation of Cyber Attack Scenarios Across the Kill Chain
Max Landauer, Wolfgang Hotwagner, Thorina Boenke +2
Adversary emulation tools facilitate scripting and automated execution of cyber attack chains, thereby reducing costs and manual expert effort required for security testing, cyber…
Trace of the Times: Rootkit Detection through Temporal Anomalies in Kernel Activity
Max Landauer, Leonhard Alton, Martina Lindorfer +3
Kernel rootkits provide adversaries with permanent high-privileged access to compromised systems and are often a key element of sophisticated attack chains. At the same time, they…