Team Members

Mohand Khaled

Team Leader

Yasmin Mostafa

Team Member

Jana Ahmed

Team Member

Hoda Amr

Team Member

Supervisors

Dr. Diaa Salama

Associate Professor

Eng. Salma Osama

Teaching Assistant

Abstract

Recently, organisations have been focusing just on external attacks, neglecting the threat posed by insiders. Insider threats are now one of the most massive and damaging threats that could happen for any system. Also, the log files are the target for any insider attack. Therefor, This project proposes a secure machine learning system for log insiders attacks to determine the normal and abnormal behaviours after scanning the log files, and then send warning when detecting any irregular action. So, the paper introduces a Web application that highlights the idea of securing systems from internal malicious doubts using some machine learning algorithms like(SVM-Isolated forest-Kmeans). Those algorithms briefly collects raw logs, parsing those logs, then extract features and finally detect any danger with applying risk assessment techniques to minimize risks to be with high effectiveness in evaluation matrix stage. At last, the impact that the paper aims is to focus on the idea of implementing an applicable and essential detector application to stop precariousness.

System Objectives

•  Constant Monitoring for log files to detect insiders unexpected behaviors.

•  Determine the difference between normal and abnormal behaviors using machine learning and to secure cooperate ’s system from the abnormal ones.

•  Get an early warning before system getting attacked.

•  Secure the system from the malicious insiders using the application.

System Scope

•  The system keeps constant monitoring of system’s logs.

•  Detection of any abnormal behavior happening by an insider.

•  Measuring the effectiveness of machine learning models.

•  The system sends a warning to stop any threat on the system.

•  Securing large corporations by using Anomaly Detection application.

Documents and Presentations

Proposal

You will find here the documents and presentation for our proposal.

SRS

You will find here the documents and presentation for our SRS.

SDD

You will find here the documents and presentation for our SDD.

Thesis

You will find here the documents and presentation for our Thesis

Document

Presentation

Accomplishments

Publications

Competitions

Competition Title

type here detailss about your participation in the competition.