CPD detects cyber persistence threats via provenance analytics on two-phase operations connected by pseudo-dependency edges, reducing false positive rates by 93% on standard datasets.
KAIROS: Practical intrusion detection and investigation using whole-system provenance
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2024 1verdicts
UNVERDICTED 1representative citing papers
citing papers explorer
-
Accurate and Scalable Detection and Investigation of Cyber Persistence Threats
CPD detects cyber persistence threats via provenance analytics on two-phase operations connected by pseudo-dependency edges, reducing false positive rates by 93% on standard datasets.