Insider Threat Detection via Hierarchical Neural Temporal Point Processes

10/08/2019
by   Shuhan Yuan, et al.
0

Insiders usually cause significant losses to organizations and are hard to detect. Currently, various approaches have been proposed to achieve insider threat detection based on analyzing the audit data that record information of the employee's activity type and time. However, the existing approaches usually focus on modeling the users' activity types but do not consider the activity time information. In this paper, we propose a hierarchical neural temporal point process model by combining the temporal point processes and recurrent neural networks for insider threat detection. Our model is capable of capturing a general nonlinear dependency over the history of all activities by the two-level structure that effectively models activity times, activity types, session durations, and session intervals information. Experimental results on two datasets demonstrate that our model outperforms the models that only consider information of the activity types or time alone.

READ FULL TEXT
research
08/13/2018

Time Perception Machine: Temporal Point Processes for the When, Where and What of Activity Prediction

Numerous powerful point process models have been developed to understand...
research
08/13/2018

Time Perception Machine: Temporal PointProcesses for the When, Where and What ofActivity Prediction

Numerous powerful point process models have been developed to understand...
research
09/12/2018

SAFE: A Neural Survival Analysis Model for Fraud Early Detection

Many online platforms have deployed anti-fraud systems to detect and pre...
research
06/22/2020

Hybrid Session-based News Recommendation using Recurrent Neural Networks

We describe a hybrid meta-architecture – the CHAMELEON – for session-bas...
research
11/27/2017

Characterising Dependency in Computer Networks using Spectral Coherence

The transmission or reception of packets passing between computers can b...
research
11/11/2022

STAR: A Session-Based Time-Aware Recommender System

Session-Based Recommenders (SBRs) aim to predict users' next preferences...
research
11/21/2013

Bayesian Discovery of Threat Networks

A novel unified Bayesian framework for network detection is developed, u...

Please sign up or login with your details

Forgot password? Click here to reset