A framework for mastering heterogeneity in multi-layer security information and event correlation
详细信息    查看全文
文摘

We detected limits of SIEM systems while being used to protect critical infrastructures from sophisticated cyberattacks.

We developed a new data collection and pre-correlation framework named “GET”.

GET links physical to logical security and exploits knowledge of the Business Process.

The GET framework has been integrated into the open-source SIEM OSSIM.

We validated the GET in a dam control system and a mobile phone based payment service.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700