Application Audit Trail Analysis
dc.contributor.author | Schuberg, Björn | |
dc.contributor.department | Chalmers tekniska högskola / Institutionen för data- och informationsteknik (Chalmers) | sv |
dc.contributor.department | Chalmers University of Technology / Department of Computer Science and Engineering (Chalmers) | en |
dc.date.accessioned | 2019-07-03T12:27:54Z | |
dc.date.available | 2019-07-03T12:27:54Z | |
dc.date.issued | 2010 | |
dc.description.abstract | An application audit trail may be analyzed for a number of reasons; performance enhancement of networks and computers, identification of security incidents and operational problems as well as fraud tracking. In this thesis, focus lies on detecting intrusions into information systems. An approach for analysis of an audit trail from an arbitrary application is presented. It's extensible and allows for further methods of analysis to be incorporated. For the purpose of this thesis, two methods were implemented and used in parallel to find intrusions. A technique for labeling signaled intrusions with an indication of their certainty is developed. This allows for focus on alarms with a higher certainty, and will thus facilitate a faster response. The analysis system was tested against several scenarios. All which contained intrusions were detected. Among these, all but one was deemed as an intrusion with highest certainty. Further, the amount of false positives when analyzing the test datasets were only fraction of a percentage. | |
dc.identifier.uri | https://hdl.handle.net/20.500.12380/128986 | |
dc.language.iso | eng | |
dc.setspec.uppsok | Technology | |
dc.subject | Programvaruteknik | |
dc.subject | Software Engineering | |
dc.title | Application Audit Trail Analysis | |
dc.type.degree | Examensarbete för masterexamen | sv |
dc.type.degree | Master Thesis | en |
dc.type.uppsok | H | |
local.programme | Computer systems and networks (MPCSN), MSc |
Download
Original bundle
1 - 1 of 1
Loading...
- Name:
- 128986.pdf
- Size:
- 709.28 KB
- Format:
- Adobe Portable Document Format
- Description:
- Fulltext