Skip to main content

Showing 1–3 of 3 results for author: Larroche, C

.
  1. arXiv:2303.15950  [pdf, other

    cs.CR stat.AP stat.ML

    A source separation approach to temporal graph modelling for computer networks

    Authors: Corentin Larroche

    Abstract: Detecting malicious activity within an enterprise computer network can be framed as a temporal link prediction task: given a sequence of graphs representing communications between hosts over time, the goal is to predict which edges should--or should not--occur in the future. However, standard temporal link prediction algorithms are ill-suited for computer network monitoring as they do not take acc… ▽ More

    Submitted 28 March, 2023; originally announced March 2023.

  2. arXiv:2206.10413  [pdf, other

    cs.CR stat.AP

    Multilayer Block Models for Exploratory Analysis of Computer Event Logs

    Authors: Corentin Larroche

    Abstract: We investigate a graph-based approach to exploratory data analysis in the context of network security monitoring. Given a possibly large batch of event logs describing ongoing activity, we first represent these events as a bipartite multiplex graph. We then apply a model-based biclustering algorithm to extract relevant clusters of entities and interactions between these clusters, thereby providing… ▽ More

    Submitted 21 June, 2022; originally announced June 2022.

  3. arXiv:2103.15708  [pdf, other

    cs.CR

    Dynamically Modelling Heterogeneous Higher-Order Interactions for Malicious Behavior Detection in Event Logs

    Authors: Corentin Larroche, Johan Mazel, Stephan Clémençon

    Abstract: Anomaly detection in event logs is a promising approach for intrusion detection in enterprise networks. By building a statistical model of usual activity, it aims to detect multiple kinds of malicious behavior, including stealthy tactics, techniques and procedures (TTPs) designed to evade signature-based detection systems. However, finding suitable anomaly detection methods for event logs remains… ▽ More

    Submitted 28 June, 2022; v1 submitted 29 March, 2021; originally announced March 2021.