Назва:
Threats detection and analysis based on SYSMON tool

custom.quartileScopus (Q4)
dc.contributor.authorNataliia Bahniuk
dc.contributor.authorOleksandr Linchuk
dc.contributor.authorKateryna Bortnyk
dc.contributor.authorInna Kondius
dc.contributor.authorKateryna Melnyk
dc.contributor.authorKostiantyn Kondius
dc.date.accessioned2026-06-09T12:36:42Z
dc.date.issued2023
dc.description.abstractIn this work, an nalysis for the study of threats in a real environment with the possibility of conducting a fullfledged analysis of threats, as well as their simulationhas been developed for research purposes. Designed laboratory was built for the threats research, specification of deploying and configuring Sysmon, imitation of an attack in laboratory conditions and its investigation by implicit signs, the processesing of threat analysis using the Sysmon tool. We present a system based on the analysis of continuous input chan-nels of Sysmon logs. The system is based on the Cyber Threat Analysis Ontology and analyzes SYSMON logs to classify software according to different threat levels and enhance cyber defense capabilities with situational awareness, prediction and auto-mated actions. The developed laboratory improves the effectiveness of threat analysis using the Sysmon tool, makes study of threats, deploying and configuring Sysmon, imitation of an attack in laboratory conditions and its investigation by implicit signs. It can be applied for the study of threats in a real environment with the possibility of conducting a full-fledged analysis of threats, as well as their simulation for research purposes.
dc.identifier.citationN. Bahniuk, O. Linchuk, K. Bortnyk, I.Kondius, K. Melnyk and K. Kondius, "Threats Detection and Analysis Based on SYSMON Tool," 2023 13th International Conference on Dependable Systems, Services and Technologies (DESSERT), Athens, Greece, 2023, pp. 1-7
dc.identifier.doi10.1109/DESSERT61349.2023.10416443
dc.identifier.urihttps://repository.lntu.edu.ua/handle/123456789/3643
dc.language.isoen
dc.subjectSYSMON tool
dc.subjectThreats Detection
dc.subjectCyberattacks
dc.titleThreats detection and analysis based on SYSMON tool
dc.typeArticle
dspace.entity.typeScientificArticle

Файли

Контейнер файлів

Зараз показуємо 1 - 1 з 1
Вантажиться...
Ескіз
Назва:
Threats Detection and Analysis Based on SYSMON Tool.pdf
Розмір:
288.13 KB
Формат:
Adobe Portable Document Format

Ліцензійна угода

Зараз показуємо 1 - 1 з 1
Вантажиться...
Ескіз
Назва:
license.txt
Розмір:
1.59 KB
Формат:
Item-specific license agreed to upon submission
Опис: