Online Program Home
  My Program

All Times EDT

Abstract Details

Activity Number: 27 - SDNS Speed Session
Type: Contributed
Date/Time: Sunday, August 8, 2021 : 1:30 PM to 3:20 PM
Sponsor: Section on Statistics in Defense and National Security
Abstract #318428
Title: Statistics in Network Security
Author(s): Ganesh K Subramaniam* and Srivathsan Srinivasagopalan and Robert Archibald
Companies: AT&T and AT&T and AT&T
Keywords: Network security; NetFlow data; Botnet Command& Control; interpretative machine learning; statistical intrusion detection system; Machine learning models,
Abstract:

Cybersecurity, security monitoring of malicious events in IP traffic, is an important field largely unexplored by statisticians. Computer scientists have made significant contributions in this area using statistical anomaly detection and other supervised learning methods to detect specific malicious events. In this research, we investigate the detection of botnet command and control (C&C) hosts in massive IP traffic. Employing interpretative machine learning techniques, botnet traffic signatures are derived. These models were deployed at AT&T for successfully detecting several external botnet hosts and compromised devices.


Authors who are presenting talks have a * after their name.

Back to the full JSM 2021 program