EarlyCrow detects APT malware command-and-control over HTTP(S) by classifying contextual summaries of network flows, achieving a macro F1 of about 93% on unseen APT families.
Anomaly detection in log data using graph databases and machine learning to defend advanced persistent threats,
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2025 1verdicts
CONDITIONAL 1representative citing papers
citing papers explorer
-
Detecting APT Malware Command and Control over HTTP(S) Using Contextual Summaries
EarlyCrow detects APT malware command-and-control over HTTP(S) by classifying contextual summaries of network flows, achieving a macro F1 of about 93% on unseen APT families.