Apr, 2023

TBDetector:面向先进持久性威胁的基于 Transformer 的检测器,带有溯源图

TL;DRTBDetector is a transformer-based APT detection method that uses provenance analysis to identify anomalous activities in long-running system executions and extracts long-term features of system states with anomaly scores, presenting better performance than current state-of-the-art methods.