2021
DOI: 10.1109/tifs.2021.3076288
|View full text |Cite
|
Sign up to set email alerts
|

General, Efficient, and Real-Time Data Compaction Strategy for APT Forensic Analysis

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
10
0

Year Published

2021
2021
2023
2023

Publication Types

Select...
2
2
2

Relationship

1
5

Authors

Journals

citations
Cited by 21 publications
(10 citation statements)
references
References 23 publications
0
10
0
Order By: Relevance
“…Similarly, Conan [29] prefiltered the duplicated read events through semantic recognition to reduce the detection efficiency. Zhu et al [59] maintained a long list to record redundant events. However, the above three methods are only applicable to specific event types, and have limitations in complex scenarios (e.g., when files are accessed by multiple processes, or there are a large number of file write operations, or the real-time performance of the system will deteriorate as the collection time increases).…”
Section: Related Workmentioning
confidence: 99%
See 4 more Smart Citations
“…Similarly, Conan [29] prefiltered the duplicated read events through semantic recognition to reduce the detection efficiency. Zhu et al [59] maintained a long list to record redundant events. However, the above three methods are only applicable to specific event types, and have limitations in complex scenarios (e.g., when files are accessed by multiple processes, or there are a large number of file write operations, or the real-time performance of the system will deteriorate as the collection time increases).…”
Section: Related Workmentioning
confidence: 99%
“…For each edge, there will be a timestamp and an event name to represent the event sequence and the meaning of the event, respectively. In some research studies of data compaction [18,29,59], system events are able to be merged with multiple timestamps or time ranges.…”
Section: Dependence Graph and Dependencymentioning
confidence: 99%
See 3 more Smart Citations