Title :
Designing Host and Network Sensors to Mitigate the Insider Threat
Author :
Bowen, Brian M. ; Ben Salem, Malek ; Hershkop, Shlomo ; Keromytis, Angelos D. ; Stolfo, Salvatore J.
Author_Institution :
Columbia Univ., New York, NY, USA
Abstract :
Insider attacks-that is, attacks by users with privileged knowledge about a system-are a growing problem for many organizations. To address this threat, the authors have designed an architecture for insider threat detection that combines an array of complementary monitoring and auditing techniques.
Keywords :
security of data; system monitoring; auditing technique; host sensors; insider threat detection; monitoring technique; network sensors; decoys; host-based sensors; insider attacks; network sensors;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2009.109