CAsK: Applying distributed multi-agent models for the detection of cyber attacks across the kill chain

Cyber-attacks are becoming more sophisticated and complex.  This project aimed to improve the existing endpoint monitoring using artificial intelligence by moving from flat, event-based models to hierarchical multi-agent models. A “semantic” analysis (log lines are grounded within knowledge about the IT infrastructure) leads to behavioural information to support Security Operation Centre (SOC) analysts. This information can also be used to spot anomalies.

Privacy Settings
We use cookies to enhance your experience while using our website. If you are using our Services via a browser you can restrict, block or remove cookies through your web browser settings. We also use content and scripts from third parties that may use tracking technologies. You can selectively provide your consent below to allow such third party embeds. For complete information about the cookies we use, data we collect and how we process them, please check our Privacy Policy
Youtube
Consent to display content from - Youtube
Vimeo
Consent to display content from - Vimeo
Google Maps
Consent to display content from - Google