Asset Details
MbrlCatalogueTitleDetail
Do you wish to reserve the book?
Living-Off-The-Land Command Detection Using Active Learning
by
Platt, John C
, Ongun, Talha
, Stokes, Jack W
, Neil, Joshua
, Tian, Ke
, Seifert, Christian
, Oprea, Alina
, Jonathan Bar Or
, Tajaddodianfar, Farid
in
Active learning
/ Anti-virus software
/ Classifiers
/ Embedding
/ Machine learning
/ Training
2021
Hey, we have placed the reservation for you!
By the way, why not check out events that you can attend while you pick your title.
You are currently in the queue to collect this book. You will be notified once it is your turn to collect the book.
Oops! Something went wrong.
Looks like we were not able to place the reservation. Kindly try again later.
Are you sure you want to remove the book from the shelf?
Living-Off-The-Land Command Detection Using Active Learning
by
Platt, John C
, Ongun, Talha
, Stokes, Jack W
, Neil, Joshua
, Tian, Ke
, Seifert, Christian
, Oprea, Alina
, Jonathan Bar Or
, Tajaddodianfar, Farid
in
Active learning
/ Anti-virus software
/ Classifiers
/ Embedding
/ Machine learning
/ Training
2021
Oops! Something went wrong.
While trying to remove the title from your shelf something went wrong :( Kindly try again later!
Do you wish to request the book?
Living-Off-The-Land Command Detection Using Active Learning
by
Platt, John C
, Ongun, Talha
, Stokes, Jack W
, Neil, Joshua
, Tian, Ke
, Seifert, Christian
, Oprea, Alina
, Jonathan Bar Or
, Tajaddodianfar, Farid
in
Active learning
/ Anti-virus software
/ Classifiers
/ Embedding
/ Machine learning
/ Training
2021
Please be aware that the book you have requested cannot be checked out. If you would like to checkout this book, you can reserve another copy
We have requested the book for you!
Your request is successful and it will be processed during the Library working hours. Please check the status of your request in My Requests.
Oops! Something went wrong.
Looks like we were not able to place your request. Kindly try again later.
Living-Off-The-Land Command Detection Using Active Learning
Paper
Living-Off-The-Land Command Detection Using Active Learning
2021
Request Book From Autostore
and Choose the Collection Method
Overview
In recent years, enterprises have been targeted by advanced adversaries who leverage creative ways to infiltrate their systems and move laterally to gain access to critical data. One increasingly common evasive method is to hide the malicious activity behind a benign program by using tools that are already installed on user computers. These programs are usually part of the operating system distribution or another user-installed binary, therefore this type of attack is called \"Living-Off-The-Land\". Detecting these attacks is challenging, as adversaries may not create malicious files on the victim computers and anti-virus scans fail to detect them. We propose the design of an Active Learning framework called LOLAL for detecting Living-Off-the-Land attacks that iteratively selects a set of uncertain and anomalous samples for labeling by a human analyst. LOLAL is specifically designed to work well when a limited number of labeled samples are available for training machine learning models to detect attacks. We investigate methods to represent command-line text using word-embedding techniques, and design ensemble boosting classifiers to distinguish malicious and benign samples based on the embedding representation. We leverage a large, anonymized dataset collected by an endpoint security product and demonstrate that our ensemble classifiers achieve an average F1 score of 0.96 at classifying different attack classes. We show that our active learning method consistently improves the classifier performance, as more training data is labeled, and converges in less than 30 iterations when starting with a small number of labeled instances.
Publisher
Cornell University Library, arXiv.org
Subject
MBRLCatalogueRelatedBooks
Related Items
Related Items
We currently cannot retrieve any items related to this title. Kindly check back at a later time.
This website uses cookies to ensure you get the best experience on our website.