Skip to main content

Showing 1–1 of 1 results for author: Inam, M A

Searching in archive cs. Search in all archives.
.
  1. arXiv:2405.04691  [pdf, other

    cs.CR cs.LG

    Carbon Filter: Real-time Alert Triage Using Large Scale Clustering and Fast Search

    Authors: Jonathan Oliver, Raghav Batta, Adam Bates, Muhammad Adil Inam, Shelly Mehta, Shugao Xia

    Abstract: "Alert fatigue" is one of the biggest challenges faced by the Security Operations Center (SOC) today, with analysts spending more than half of their time reviewing false alerts. Endpoint detection products raise alerts by pattern matching on event telemetry against behavioral rules that describe potentially malicious behavior, but can suffer from high false positives that distract from actual atta… ▽ More

    Submitted 7 May, 2024; originally announced May 2024.