• Email
  • Favorite
  • Download
  • Embed
  • Private Content

Log Mining: Beyond Log Analysis

by Anton Chuvakin on Sep 27, 2007

  • 18,501 views

The presentation will describe methods for discovering interesting and actionable patterns in log files for security management without specifically knowing what you are looking for. This approach is d...

The presentation will describe methods for discovering interesting and actionable patterns in log files for security management without specifically knowing what you are looking for. This approach is different from "classic" log analysis and it allows gaining an insight into insider attacks and other advanced intrusions, which are extremely hard to discover with other methods. Specifically, I will demonstrate how data mining can be used as a source of ideas for designing future log analysis techniques, that will help uncover the coming threats. The important part of the presentation will be the demonstration how the above methods worked in a real-life environment.

Accessibility

Categories

Tags

security logging management data chuvakin logs log analysis mining log mining security log mining sec architecture hot 2 information

More...

Upload Details

Uploaded via SlideShare as Microsoft PowerPoint

Usage Rights

© All Rights Reserved

Flagged as inappropriate Flag as inappropriate
Flag as inappropriate

Select your reason for flagging this presentation as inappropriate. If needed, use the feedback form to let us know more details.

Cancel

9 Embeds 213

http://seguridad-informacion.blogspot.com 166
http://www.slideshare.net 33
http://seguridad-informacion.blogspot.com.ar 7
http://10.50.10.9 2
http://anonymouse.org 1
http://www.blogger.com 1
http://translate.googleusercontent.com 1
http://webcache.googleusercontent.com 1
http://seguridad-informacion.blogspot.co.uk 1

More...

Statistics

Favorites
17
Downloads
0
Comments
0
Embed Views
213
Views on SlideShare
18,288
Total Views
18,501
Post Comment
Edit your comment Cancel

Log Mining: Beyond Log Analysis — Presentation Transcript