Meždunarodnyj naučno-issledovatel'skij žurnal
RUS  ENG    JOURNALS   PEOPLE   ORGANISATIONS   CONFERENCES   SEMINARS   VIDEO LIBRARY   PACKAGE AMSBIB  
General information
Latest issue
Archive

Search papers
Search references

RSS
Latest issue
Current issues
Archive issues
What is RSS



Meždunar. nauč.-issled. žurn.:
Year:
Volume:
Issue:
Page:
Find






Personal entry:
Login:
Password:
Save password
Enter
Forgotten password?
Register


Meždunarodnyj naučno-issledovatel'skij žurnal, 2021, , Issue 4(106), Pages 32–34
DOI: https://doi.org/10.23670/IRJ.2021.106.4.005
(Mi irj607)
 

PHYSICS AND MATHEMATICS

Overview of methods for static and dynamic clustering of security event logs

E. L. Krotova, R. A. Andreev, P. A. Andreeva

Perm National Research Polytechnic University
References:
Abstract: Security event log files provide insight into the state of the information system and allow detecting anomalies in user behavior and information security incidents. However, automatic analysis of security event log data is difficult because it contains a huge amount of unstructured data collected from various sources. This article provides an overview of existing approaches that condense or summarize log data using clustering methods, namely static and dynamic clustering methods. The study examines the examples of using static and dynamic clustering of security event logs as well as limitations and problems in the use of these methods.
Keywords: event logs, user behavior, anomalies, information security incidents, clustering.
Document Type: Article
Language: Russian
Citation: E. L. Krotova, R. A. Andreev, P. A. Andreeva, “Overview of methods for static and dynamic clustering of security event logs”, Meždunar. nauč.-issled. žurn., 2021, no. 4(106), 32–34
Citation in format AMSBIB
\Bibitem{KroAndAnd21}
\by E.~L.~Krotova, R.~A.~Andreev, P.~A.~Andreeva
\paper Overview of methods for static and dynamic clustering of security event logs
\jour Me{\v z}dunar. nau{\v{c}}.-issled. {\v z}urn.
\yr 2021
\issue 4(106)
\pages 32--34
\mathnet{http://mi.mathnet.ru/irj607}
\crossref{https://doi.org/10.23670/IRJ.2021.106.4.005}
Linking options:
  • https://www.mathnet.ru/eng/irj607
  • https://www.mathnet.ru/eng/irj/v106/i4/p32
  • Citing articles in Google Scholar: Russian citations, English citations
    Related articles in Google Scholar: Russian articles, English articles
    Meždunarodnyj naučno-issledovatel'skij žurnal
    Statistics & downloads:
    Abstract page:77
    Full-text PDF :46
    References:16
     
      Contact us:
     Terms of Use  Registration to the website  Logotypes © Steklov Mathematical Institute RAS, 2024