Project

General

Profile

Actions

Feature #1899

open
VJ CT

Detecting Malicious TCP Network Flows Based on Benford’s Law

Feature #1899: Detecting Malicious TCP Network Flows Based on Benford’s Law

Added by Victor Julien almost 10 years ago. Updated 20 days ago.

Status:
Triaged
Priority:
Normal
Target version:
Effort:
Difficulty:
Label:

Description

This is an interesting paper:

“Flow Size Difference” Can Make a Difference: Detecting Malicious TCP Network Flows Based on Benford’s Law

http://arxiv.org/pdf/1609.04214v1.pdf

AH Updated by Andreas Herz over 9 years ago Actions #1

  • Assignee set to OISF Dev

VJ Updated by Victor Julien almost 7 years ago Actions #2

  • Assignee changed from OISF Dev to Community Ticket

PA Updated by Philippe Antoine almost 3 years ago Actions #3

What is missing in Suricata to have this as post process ?

PA Updated by Philippe Antoine 20 days ago Actions #4

  • Status changed from New to Triaged
Actions

Also available in: PDF Atom