Analysis of the Security Level of Information Systems and Methods for Detecting Network Anomalies

Besik Beridze, Mikheil Donadze · 2024

ABSTRACT: The paper delves into the fundamentals of information systems security, providing an analysis of the security levels of both information and network resources. It describes various types of attacks on information systems along with their detection methods. Additionally, it characterizes systems based on anomaly detection methods in information system behaviors and outlines key aspects of constructing attack detection systems. The study further investigates network anomalies and provides detailed characterizations of attack types. Novel methods for detecting attacks on information systems have been developed, including a new approach involving the utilization of threat expectation reports for attack detection purposes. Moreover, a method for detecting anomalies based on behavior in information systems has been devised. Specifically, the presented algorithm focuses on establishing a model of regular or typical system/user functionality. Through this approach, the system compares current activity rates with the normal activity profile, identifying significant deviations as potential sources of attack or network anomalies.

Read the paper · More papers on PaperTik