2021
DOI: 10.1002/wfs2.1448
|View full text |Cite
|
Sign up to set email alerts
|

Toward situational awareness in threat detection. A survey

Abstract: The pervasiveness of the Internet did not come without security risk. The current threat landscape is characterized by the rise of sophisticated cyber attacks, which target user devices and corporate infrastructure. To tackle the risk of compromise, data-driven detection strategies have become increasingly mainstream. The relevant literature includes many works that leverage opensource datasets, supervised learning or, less commonly, unsupervised learning. However, advanced network attacks' spatial and tempora… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
1
0

Year Published

2023
2023
2024
2024

Publication Types

Select...
1
1

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
(2 citation statements)
references
References 94 publications
0
1
0
Order By: Relevance
“…The application of situational awareness in intrusion detection systems involved continuous monitoring of network traffic and user activities, enabling the identification of anomalous behaviors that may indicate security breaches [19]. Adaptive security frameworks, leveraging situational awareness, provided a more resilient defense by continuously evaluating and updating threat models based on the latest contextual information [20]. Cyber-physical systems benefited from situational awareness by integrating data from various sensors and sources, enabling a holistic understanding of the security landscape [21,22].…”
Section: Related Studiesmentioning
confidence: 99%
“…The application of situational awareness in intrusion detection systems involved continuous monitoring of network traffic and user activities, enabling the identification of anomalous behaviors that may indicate security breaches [19]. Adaptive security frameworks, leveraging situational awareness, provided a more resilient defense by continuously evaluating and updating threat models based on the latest contextual information [20]. Cyber-physical systems benefited from situational awareness by integrating data from various sensors and sources, enabling a holistic understanding of the security landscape [21,22].…”
Section: Related Studiesmentioning
confidence: 99%
“…They (Rajamäki & Katos, 2019) also observed data analytics techniques (e.g., clustering and classification) promoting SA, when integrated as a part of the information sharing system. Rendall et al (2021) used a survey to examine cyber threat detection SA. Panagiotis et al (2019) noticed that Internet of Things (IoT) applications creation requires advanced knowledge extraction and real time situations.…”
Section: Early Workmentioning
confidence: 99%