Managing Intrusion Detection Alerts Using Support Vector Machines

In the computer network world Intrusion Detection Systems (IDSs) are used to identify attacks against computer systems. They produce security alerts when an attack is done by an intruder. Since IDSs generate high amount of security alerts, analyzing them are time consuming and error prone. To solve this problem IDS alert management techniques are introduced. They manage generated alerts and handle true positive and false positive alerts. In this paper, a new alert management system is presented. It uses Support Vector Machine (SVM) as a core component of the system that classifies generated alerts.

Spotlight

Signal Alliance Limited

Signal Alliance is a diversified technology company with over 20 years’ experience in the Nigerian technology and business landscape, starting out first as an IT networking company in 1996, before quickly evolving into IT systems integrator. It is a leading Microsoft enterprise gold partner in Nigeria and has won the Microsoft Country Partner of the Year Nigeria. Signal Alliance has grown to be a vibrant, forward moving ICT company with offices in Lagos and Abuja. IT prides herself on her ability to gain a thorough understanding of clients’ businesses by using appropriate technology as a bridge between where the client is and where they want to be.

OTHER WHITEPAPERS
news image

XDR vs. SIEM: A Cybersecurity Leader’s Guide

whitePaper | December 27, 2022

As threats intensify and SecOps teams are called upon to defend digital environments that keep growing in size and complexity, and with a defensible perimeter that has all but disappeared, cybersecurity vendors are responding with a new generation of software and service solutions.

Read More
news image

2020 Cyber Security Predictions

whitePaper | January 28, 2020

This year there are some common themes that endure, so we’ll highlight these as “work in progress”. Transformations often take longer than 12 months to be identifi ed as necessary, to be executed and to become established. However, there are other themes emerging through a combination of drivers from audit, compliance security and governance that are now showing signs of infl uencing the way that cyber risks are managed in a much shorter timescale.

Read More
news image

Dashlane’s Security Principles & Architecture

whitePaper | May 16, 2023

Dashlane Business supports login with single sign-on (SSO), using any SAML 2.0 enabled IdP. In a single-sign-on setup, the user doesn’t have to input UserMP . Instead, a random key is generated at account creation. This key (the data encryption key) is delivered to the Dashlane app after the user successfully logs in to the IdP, and it is used as a symmetric encryption key to encrypt and decrypt the user data.

Read More
news image

The Trellix Approach to Effective Cloud Security

whitePaper | October 27, 2022

In many ways, the cloud1 is more secure than a traditional data center. Asset management, inventory, audit logging, two-factor access controls, connectivity redundancy and firewalls are built into the cloud provider platform. Servers are easier to patch and won’t become outdated within a few years; there aren’t any forgotten boxes sitting in a dark corner with a note reading, “DO NOT TURN OFF.” However, assets on the cloud continue to be compromised, just as those stored in traditional data centers.

Read More
news image

Supercharge Your DLP Security Program

whitePaper | December 22, 2022

Today’s digitally transformed organizations handle vast volumes of data that is at perpetual risk for loss and leakage, either intentionally through data breaches or unintentionally through employee errors. With cybercrime damages expected to reach $10.5 trillion annually by 2025, 1 organizations must protect their threat surface holistically.

Read More
news image

Managed Security Services Platform for SOC

whitePaper | November 23, 2022

Managed Security Services (MSS) uses a combination of People, Process and Technology to deliver Intelligent SOC Capabilities. CyberRes MSS platform collects and correlates data from multiple enterprise log sources & specialized security toolsets along with integrated with custom Threat Intelligence, SOC Portal to provide comprehensive Threat Detection & Response capabilities plus better overall security outcomes.

Read More

Spotlight

Signal Alliance Limited

Signal Alliance is a diversified technology company with over 20 years’ experience in the Nigerian technology and business landscape, starting out first as an IT networking company in 1996, before quickly evolving into IT systems integrator. It is a leading Microsoft enterprise gold partner in Nigeria and has won the Microsoft Country Partner of the Year Nigeria. Signal Alliance has grown to be a vibrant, forward moving ICT company with offices in Lagos and Abuja. IT prides herself on her ability to gain a thorough understanding of clients’ businesses by using appropriate technology as a bridge between where the client is and where they want to be.

Events