2022
DOI: 10.1007/978-3-031-17510-7_1
|View full text |Cite
|
Sign up to set email alerts
|

KRAKEN: A Knowledge-Based Recommender System for Analysts, to Kick Exploration up a Notch

Abstract: During a computer security investigation, a security analyst has to explore the logs available to understand what happened in the compromised system. For such tasks, visual analysis tools have been developed to help with log exploration. They provide visualisations of aggregated logs, and help navigate data efficiently. However, even using visualisation tools, the task can still be difficult and tiresome. The amount and the numerous dimensions of the logs to analyse, the potential stealthiness and complexity o… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1
1

Citation Types

0
0
0

Year Published

2022
2022
2024
2024

Publication Types

Select...
4
2

Relationship

0
6

Authors

Journals

citations
Cited by 6 publications
(5 citation statements)
references
References 32 publications
(34 reference statements)
0
0
0
Order By: Relevance
“…Kraken 2 29 tool was used for taxonomic analysis of all samples and bacterial community along with their abundance was predicted. Further Convert Kraken 30 tool was used to convert taxonomic file generated from Kraken 2 tool into Krona compatible file so that it can be used in Krona tool 31 for visualization of bacterial diversity in all the sample files taken into consideration. Figure 1 shows the steps and tools used for metagenomics analysis.…”
Section: Methodsmentioning
confidence: 99%
“…Kraken 2 29 tool was used for taxonomic analysis of all samples and bacterial community along with their abundance was predicted. Further Convert Kraken 30 tool was used to convert taxonomic file generated from Kraken 2 tool into Krona compatible file so that it can be used in Krona tool 31 for visualization of bacterial diversity in all the sample files taken into consideration. Figure 1 shows the steps and tools used for metagenomics analysis.…”
Section: Methodsmentioning
confidence: 99%
“…By incorporating knowledge about learning styles and semantic web rules, their system can provide tailored recommendations that cater to individual learners' preferences and needs. KRAKEN, a knowledge-based recommender system created for security analysts, was introduced by Brisse, Boche, Majorczyk, and Lalande in 2022 (Brisse, Boche, Majorczyk, & Lalande, 2022). Their work highlights the value of knowledge-based strategies in assisting data exploration and decision-making processes.…”
Section: Related Workmentioning
confidence: 99%
“…Studies [22] and [23] use ATT&CK data for collaborative filtering, with the aim of assisting SOC analysts in their analysis. Elitzur et al [22] proposed an approach to improve analysts' hypotheses about ongoing attacks by using a recommendation algorithm on the Cyber Threat Intelligence (CTI) graph and the ATT&CK knowledge graph.…”
Section: Related Workmentioning
confidence: 99%
“…However, since the analyst-created hypotheses are used as input for the recommendations, the results may be affected by the analyst's skill in creating the hypotheses. Brisse et al [23] have developed a visualization system based on knowledge-based recommendations called KRAKEN. They intended to add function to a tool called ZeroKit [24] that enables analysts to visualize data during log analysis and incident response.…”
Section: Related Workmentioning
confidence: 99%