Server Monitoring Application for Insider Attack Detection and Prevention

Abstract

Although insider attacks have increased rapidly in recent years and cause enormous damages, there are very few academic studies that have investigated this problem and proposed a solution. Many of these attacks are kept private for reasons such as loss of prestige and advantage of competing companies. The main difference between insider attacks and external attacks is that in the former case, attackers are authorized users in the organization. This causes countermeasures against external attacks to be useless and facilitates the exploitation of weaknesses. In the detection of insider attacks, all unusual events need to be scrutinized. Therefore, risk assessment should be done first to determine vulnerabilities against insider attacks and necessary precautions should be taken in this direction. In this study, general insider attack features and past attacks were investigated, and a server monitoring application was developed to detect suspicious activities. Organizations using this system will be informed about their level of risk, and improve their level of preparation and ability to identify potential attackers by analyzing the collected data.

Authors and Affiliations

Halil İbrahim ULUS, Mehmet DEMİRCİ

Keywords

Related Articles

Determination of Fatigue Resistance of Vehicle Wheels by Structural Analysis

Wheels rim which run under static and dynamic loads on vehicles are critical elements. Running wheels rim on surfaces under repeated stress, depending on the time, after a certain number of repeated, cracks occur. As a r...

Material Design for Biodiesel by-product Glycerine Evaluation

In this study, transesterification of glycerol which is the byproduct of biodiesel with dimethyl carbonate (DMC) to glycerol carbonate was investigated. Solid basic catalyst which is 35% KOH loaded to alumina was synthes...

Design and Production of An Active Wrist Orthosis

This study aims design and production of an active wrist orthosis which could be used both for the rehabilitation and the continuance of daily and professional activities of patients having a tendon torn or inflammation...

Experimental Investigation of the Useful Use of Electricity in Thermoelectric Generators by Using Waste Flue Gas

As wiring up the many thermoelectric generators in serial, voltage can be increased and wiring up the parallel the current can be increased. In this work, experiment set has occured with thermoelectric generators. The ge...

Design of Parallel Analog to Digital Converter Based on Darlington CMOS Inverter

This article presents a 4-bit parallel analog-to-digital converter was designed by using Darlington CMOS Inverter which is operated in accordance with CMOS threshold voltage. Thus, there is no need to use resistance arra...

Download PDF file
  • EP ID EP490828
  • DOI 10.29109/gujsc.351365
  • Views 82
  • Downloads 0

How To Cite

Halil İbrahim ULUS, Mehmet DEMİRCİ (2018). Server Monitoring Application for Insider Attack Detection and Prevention. Gazi Üniversitesi Fen Bilimleri Dergisi Part C: Tasarım ve Teknoloji, 6(3), 507-523. https://europub.co.uk/articles/-A-490828