Server Monitoring Application for Insider Attack Detection and Prevention

Abstract

Although insider attacks have increased rapidly in recent years and cause enormous damages, there are very few academic studies that have investigated this problem and proposed a solution. Many of these attacks are kept private for reasons such as loss of prestige and advantage of competing companies. The main difference between insider attacks and external attacks is that in the former case, attackers are authorized users in the organization. This causes countermeasures against external attacks to be useless and facilitates the exploitation of weaknesses. In the detection of insider attacks, all unusual events need to be scrutinized. Therefore, risk assessment should be done first to determine vulnerabilities against insider attacks and necessary precautions should be taken in this direction. In this study, general insider attack features and past attacks were investigated, and a server monitoring application was developed to detect suspicious activities. Organizations using this system will be informed about their level of risk, and improve their level of preparation and ability to identify potential attackers by analyzing the collected data.

Authors and Affiliations

Halil İbrahim ULUS, Mehmet DEMİRCİ

Keywords

Related Articles

A New Hydrotherapy Exercise Device’s Conceptual Design with Systematical Design Approach

Today, many fitness devices are used for doing physical exercises as a result of inactive life. These devices usually focus on fundamentally working of a muscle or muscle group. For this purpose hydrotherapy which is phy...

3D Printed Ceramic Vases

In this study, design and production processes of ceramic vases inspired with different geometrical shapes and produced with three-dimensional printers have been examined. When ceramics are being designed, polygons and p...

Semi Quantitative Evaluation of the Workers’ Findings About Health and Safety in Health Sector

In this study a semi-quantitative analysis was done in order to determine the views of workers who work in direct medical services related to health and safety hazards and risks in the workplace by receiving the opinions...

Comparison of Load Flow Analysis Methods in Power Systems with Different Number of Buses

Nowadays, generation and consumption points are constantly increasing in parallel with the increasing energy demand and power systems are rapidly growing. However, it is very important to plan, install and operate the po...

Investigation of the Wear and Machinability Properties of Laser Coated AA7075 Aluminum Alloy Materials

In this study, ZrB2 nanoparticles which is synthesized by the mechanochemical method were coated on the surface of AA7075 aluminum alloy with CO2 laser. Two different experimental sets were performed to determine the eff...

Download PDF file
  • EP ID EP490828
  • DOI 10.29109/gujsc.351365
  • Views 58
  • Downloads 0

How To Cite

Halil İbrahim ULUS, Mehmet DEMİRCİ (2018). Server Monitoring Application for Insider Attack Detection and Prevention. Gazi Üniversitesi Fen Bilimleri Dergisi Part C: Tasarım ve Teknoloji, 6(3), 507-523. https://europub.co.uk/articles/-A-490828