HUSÁK, Martin, Martin LAŠTOVIČKA and Daniel TOVARŇÁK. System for Continuous Collection of Contextual Information for Network Security Management and Incident Handling. Online. In ARES 2021: The 16th International Conference on Availability, Reliability and Security. Virtual Event: Association for Computing Machinery, 2021, p. 1-8. ISBN 978-1-4503-9051-4. Available from: https://dx.doi.org/10.1145/3465481.3470037.
Other formats:   BibTeX LaTeX RIS
Basic information
Original name System for Continuous Collection of Contextual Information for Network Security Management and Incident Handling
Authors HUSÁK, Martin, Martin LAŠTOVIČKA and Daniel TOVARŇÁK.
Edition Virtual Event, ARES 2021: The 16th International Conference on Availability, Reliability and Security, p. 1-8, 8 pp. 2021.
Publisher Association for Computing Machinery
Other information
Original language English
Type of outcome Proceedings paper
Country of publisher United States of America
Confidentiality degree is not subject to a state or trade secret
Publication form electronic version available online
WWW URL
Organization Ústav výpočetní techniky – Repository – Repository
ISBN 978-1-4503-9051-4
Doi http://dx.doi.org/10.1145/3465481.3470037
UT WoS 000749539200084
Keywords in English Cybersecurity;Network monitoring;Cyber situational awareness;Incident response;Incident handling
Links EF16_019/0000822, research and development project.
Changed by Changed by: RNDr. Daniel Jakubík, učo 139797. Changed: 8/4/2022 03:29.
Abstract
In this paper, we describe a system for the continuous collection of data for the needs of network security management. When a cybersecurity incident occurs in the network, the contextual information on the involved assets facilitates estimating the severity and impact of the incident and selecting an appropriate incident response. We propose a system based on the combination of active and passive network measurements and the correlation of the data with third-party systems. The system enumerates devices and services in the network and their vulnerabilities via fingerprinting of operating systems and applications. Further, the system pairs the hosts in the network with contacts on responsible administrators and highlights critical infrastructure and its dependencies. The system concentrates all the information required for common incident handling procedures and aims to speed up incident response, reduce the time spent on the manual investigation, and prevent errors caused by negligence or lack of information.
Type Name Uploaded/Created by Uploaded/Created Rights
2021-NG-SOC-contextual-information-paper.pdf   File version 17/8/2021

Properties

Name
2021-NG-SOC-contextual-information-paper.pdf
Address within IS
https://repozitar.cz/auth/repo/45326/1124541/
Address for the users outside IS
https://repozitar.cz/repo/45326/1124541/
Address within Manager
https://repozitar.cz/auth/repo/45326/1124541/?info
Address within Manager for the users outside IS
https://repozitar.cz/repo/45326/1124541/?info
Uploaded/Created
Tue 17/8/2021 02:01

Rights

Right to read
  • anyone on the Internet
Right to upload
 
Right to administer:
  • a concrete person Mgr. Lucie Vařechová, uco 106253
  • a concrete person RNDr. Daniel Jakubík, uco 139797
  • a concrete person Mgr. Jolana Surýnková, uco 220973
Attributes
 
2021-NG-SOC-contextual-information-slides.pdf  17/8/2021

Properties

Name
2021-NG-SOC-contextual-information-slides.pdf
Address within IS
https://repozitar.cz/auth/repo/45326/1124543/
Address for the users outside IS
https://repozitar.cz/repo/45326/1124543/
Address within Manager
https://repozitar.cz/auth/repo/45326/1124543/?info
Address within Manager for the users outside IS
https://repozitar.cz/repo/45326/1124543/?info
Uploaded/Created
Tue 17/8/2021 02:01

Rights

Right to read
  • anyone on the Internet
Right to upload
 
Right to administer:
  • a concrete person Mgr. Lucie Vařechová, uco 106253
  • a concrete person RNDr. Daniel Jakubík, uco 139797
  • a concrete person Mgr. Jolana Surýnková, uco 220973
Attributes
 
2021-NG-SOC-contextual-information-video.mp4  17/8/2021

Properties

Name
2021-NG-SOC-contextual-information-video.mp4
Address within IS
https://repozitar.cz/auth/repo/45326/1124542/
Address for the users outside IS
https://repozitar.cz/repo/45326/1124542/
Address within Manager
https://repozitar.cz/auth/repo/45326/1124542/?info
Address within Manager for the users outside IS
https://repozitar.cz/repo/45326/1124542/?info
Uploaded/Created
Tue 17/8/2021 02:01

Rights

Right to read
  • anyone on the Internet
Right to upload
 
Right to administer:
  • a concrete person Mgr. Lucie Vařechová, uco 106253
  • a concrete person RNDr. Daniel Jakubík, uco 139797
  • a concrete person Mgr. Jolana Surýnková, uco 220973
Attributes
 
Print
Add to clipboard Displayed: 26/6/2024 16:03