DocumentCode
1304138
Title
Designing Host and Network Sensors to Mitigate the Insider Threat
Author
Bowen, Brian M. ; Ben Salem, Malek ; Hershkop, Shlomo ; Keromytis, Angelos D. ; Stolfo, Salvatore J.
Author_Institution
Columbia Univ., New York, NY, USA
Volume
7
Issue
6
fYear
2009
Firstpage
22
Lastpage
29
Abstract
Insider attacks-that is, attacks by users with privileged knowledge about a system-are a growing problem for many organizations. To address this threat, the authors have designed an architecture for insider threat detection that combines an array of complementary monitoring and auditing techniques.
Keywords
security of data; system monitoring; auditing technique; host sensors; insider threat detection; monitoring technique; network sensors; decoys; host-based sensors; insider attacks; network sensors;
fLanguage
English
Journal_Title
Security & Privacy, IEEE
Publisher
ieee
ISSN
1540-7993
Type
jour
DOI
10.1109/MSP.2009.109
Filename
5210091
Link To Document