2022
DOI: 10.1109/access.2022.3196362
|View full text |Cite
|
Sign up to set email alerts
|

Discovering Coordinated Groups of IP Addresses Through Temporal Correlation of Alerts

Abstract: Network-based monitoring and intrusion detection systems generate a high number of alerts reporting on the suspicious activity of IP addresses. The majority of alerts are dropped due to their low relevance, low priority or due to the high number of alerts itself. We assume that these alerts still contain valuable information, namely, about the coordination of IP addresses. Knowledge of the coordinated IP addresses improves situational awareness and reflects the requirement of security analysts as well as autom… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2023
2023
2024
2024

Publication Types

Select...
2

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
references
References 48 publications
0
0
0
Order By: Relevance