2016 IEEE 17th International Conference on Information Reuse and Integration (IRI) 2016
DOI: 10.1109/iri.2016.81
|View full text |Cite
|
Sign up to set email alerts
|

Semantic Interpretation of Structured Log Files

Abstract: Data from computer log files record traces of events involving user activity, applications, system software and network traffic. Logs are usually intended for diagnostic and debugging purposes, but their data can be extremely useful in system audits and forensic investigations. Logs created by intrusion detection systems, web servers, anti-virus and anti-malware systems, firewalls and network devices have information that can reconstruct the activities of malware or a malicious agent, help plan for remediation… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
6
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
2
2
2
1

Relationship

0
7

Authors

Journals

citations
Cited by 19 publications
(6 citation statements)
references
References 7 publications
0
6
0
Order By: Relevance
“…In terms of semantic KGs, existing approaches have focused either on structured log data only [31], or on tasks such as entity [20] and relation [37] extraction in unstructured log data. Whereas some of the extraction methods introduced in this context are similar to our approach, their focus is less on log representation, but on cybersecurity information more general (e.g., textual descriptions of attacks).…”
Section: Related Workmentioning
confidence: 99%
“…In terms of semantic KGs, existing approaches have focused either on structured log data only [31], or on tasks such as entity [20] and relation [37] extraction in unstructured log data. Whereas some of the extraction methods introduced in this context are similar to our approach, their focus is less on log representation, but on cybersecurity information more general (e.g., textual descriptions of attacks).…”
Section: Related Workmentioning
confidence: 99%
“…Numerous studies have attempted to change the log structure into a rich format to improve the understanding. Nimbalkar et al [19] translated log files and added semantics keywords. The results are demonstrated in the semantic RDF linked data, which is a machine interpretable representation.…”
Section: Structuredmentioning
confidence: 99%
“…They are typically semi-structured, combining regular entry types (dates, times, hosts) with irregular user-defined messages. For a primer on application log structures and their semantic interpretation, which is also exploited by more recent compression algorithms, the work by Nimbalkar et al [7] explains the problem domain and offers an RDF-based solution that links to domain vocabularies.…”
Section: Related Workmentioning
confidence: 99%