Server Monitoring Application for Insider Attack Detection and Prevention

Abstract

Although insider attacks have increased rapidly in recent years and cause enormous damages, there are very few academic studies that have investigated this problem and proposed a solution. Many of these attacks are kept private for reasons such as loss of prestige and advantage of competing companies. The main difference between insider attacks and external attacks is that in the former case, attackers are authorized users in the organization. This causes countermeasures against external attacks to be useless and facilitates the exploitation of weaknesses. In the detection of insider attacks, all unusual events need to be scrutinized. Therefore, risk assessment should be done first to determine vulnerabilities against insider attacks and necessary precautions should be taken in this direction. In this study, general insider attack features and past attacks were investigated, and a server monitoring application was developed to detect suspicious activities. Organizations using this system will be informed about their level of risk, and improve their level of preparation and ability to identify potential attackers by analyzing the collected data.

Authors and Affiliations

Halil İbrahim ULUS, Mehmet DEMİRCİ

Keywords

Related Articles

Design of A Two Axis Line of Sight Stabilization System for Vessels

By preventing the angular vibrations of the platform from being carried on to the axes of the attached imaging or laser systems, line of sight stabilization allows both a stable image to be obtained and a stable marker t...

Polyurethane Production from Waste Bale Fibers

Nowadays, the methods of eliminating the pollution from wastes of the materials produced as much as the production methods are important. This requires efficiently use of sources economically and ecologically. Polyester...

An optimization model for wind turbine micro-siting in Wind Power Plant installation

The wind turbine micro-siting is one of the most important agenda topics in Wind Power Plant (WPP) installations. An appropriate siting of wind turbines increases the amount of energy produced by the WPP. In this study,...

An Investigation Of The Effects Of Solid Solution Temperature On The Wear Performance Of Aged AA7075 Alloy

In this study, the effects of different solid solution temperatures (465 °C, 470 °C, 475 °C, 480 °C and 485 °C) before aging heat treatment on the microstructure and wear behaviors of AA7075 were investigated. Scanning e...

A Mix Integer Programming Model for Parallel Machine Scheduling Problem: Using Shared Resource

In parallel machine scheduling problems, if jobs have shared resources, it is not possible to schedule these jobs at the same time. For instance, if same mold are used for producing two different plastic parts, one of th...

Download PDF file
  • EP ID EP490828
  • DOI 10.29109/gujsc.351365
  • Views 76
  • Downloads 0

How To Cite

Halil İbrahim ULUS, Mehmet DEMİRCİ (2018). Server Monitoring Application for Insider Attack Detection and Prevention. Gazi Üniversitesi Fen Bilimleri Dergisi Part C: Tasarım ve Teknoloji, 6(3), 507-523. https://europub.co.uk./articles/-A-490828