3596 research outputs found
Sort by
Predictions of Network Attacks in Collaborative Environment
This paper is a digest of the thesis on predicting cyber attacks in a collaborative environment. While previous works mostly focused on predicting attacks as seen from a single observation point, we proposed taking advantage of collaboration and exchange of intrusion detection alerts among organizations and networks. Thus, we can observe the cyber attack on a large scale and predict the next action of an adversary and its target. The thesis follows the three levels of cyber situational awareness: perception, comprehension, and projection. In the perception phase, we discuss the improvements of intrusion detection systems that allow for sharing intrusion detection alerts and their correlation. In the comprehension phase, we employed data mining to discover frequent attack patterns. In the projection phase, we present the analytical framework for the predictive analysis of the alerts backed by data mining and contemporary data processing approaches. The results are shown from experimental evaluation in the security alert sharing platform SABU, where real-world alerts from Czech academic and commercial networks are shared. The thesis is accompanied by the implementation of the analytical framework and a dataset that provides a baseline for future work
Cyber Situation Awareness via IP Flow Monitoring
Cyber situation awareness has been recognized as a vital requirement for effective cyber defense. Cyber situation awareness allows cybersecurity operators to identify, understand, and anticipate incoming threats. Achieving and maintaining the cyber situation awareness is a challenging task given the continuous evolution of the computer networks, increasing volume and speeds of the data in a network, and rising number of threats to network security. Our work contributes to the continuous evolution of cyber situation awareness by the research of novel approaches to the perception and comprehension of a computer network. We concentrate our research efforts on the domain of IP flow network monitoring. We propose improvements to the IP flow monitoring techniques that enable the enhanced perception of a computer network. Further, we conduct detailed analyses of network traffic, which allows for an in-depth understanding of host behavior in a computer network. Last but not least, we propose a novel approach to IP flow network monitoring that enables real-time cyber situation awareness
Why Did Memetics Fail? Comparative Case Study
Although the theory of memetics appeared highly promising at the beginning, it is no longer considered a scientific theory among contemporary evolutionary scholars. This study aims to compare the genealogy of memetics with the historically more successful gene-culture coevolution theory. This comparison is made in order to determine the constraints that emerged during the internal development of the memetics theory that could bias memeticists to work on the ontology of meme units as opposed to hypotheses testing, which was adopted by the gene-culture scholars. I trace this problem back to the diachronic development of memetics to its origin in the gene-centered anti-group-selectionist argument of George C. Williams and Richard Dawkins. The strict adoption of this argument predisposed memeticists with the a priori idea that there is no evolution without discrete units of selection, which in turn, made them dependent on the principal separation of biological and memetic fitness. This separation thus prevented memeticists from accepting an adaptationist view of culture which, on the contrary, allowed gene-culture theorists to attract more scientists to test the hypotheses, creating the historical success of the gene-culture coevolution theory
Techniques for Complex Analysis of Contemporary Data
Contemporary data objects are typically complex, semi-structured, or unstructured at all. Besides, objects are also related to form a network. In such a situation, data analysis requires not only the traditional attribute-based access but also access based on similarity as well as data mining operations. Though tools for such operations do exist, they usually specialise in operation and are available for specialized data structures supported by specific computer system environments. In contrary, advance analyses are obtained by application of several elementary access operations which in turn requires expert knowledge in multiple areas. In this paper, we propose a unification platform for various data analytical operators specified as a general-purpose analytical system ADAMiSS. An extensible data-mining and similarity-based set of operators over a common versatile data structure allow the recursive application of heterogeneous operations, thus allowing the definition of complex analytical processes, necessary to solve the contemporary analytical tasks. As a proof-of-concept, we present results that were obtained by our prototype implementation on two real-world data collections: the Twitter Higg's boson and the Kosarak datasets
Je Turecko připraveno na válku se Sýrií?
Tento článek odpovídá na otázku, zda je Turecko připraveno vstoupit do otevřeného vojenského konfliktu se Sýrií Bašára al-Asada. Text vychází z adaptace Clausewitzova předpokladu, že pro vítězné vedení války musí stát disponovat třemi zdroji: vlastními bojovými silami, podporou obyvatelstva a podporou spojenců. Turecko vykazuje slabiny ve vojenské doméně, zejména v oblasti letectva a protivzdušné obrany a není jisté, že by bylo schopné ovládnout vzdušný prostor v konfliktní oblasti. Turecké obyvatelstvo si vleklý zahraniční konflikt dlouhodobě nepřeje. Země je navzdory mnoha neshodám pevně zakotvena v NATO a její strategické zájmy se neliší od zájmů svých strategických spojenců. Turecko si rovněž nemůže dovolit dostat se do přímého konfliktu s Ruskem. Text uzavírá, že Turecko si vstup do otevřeného ozbrojeného konfliktu nemůže dovolit politicky ani vojensky.This article examines whether Turkey is ready for a full-scale military conflict with Bashar Al-Assad’s Syria. It draws from an adaptation of Clausewitz’s concept of three resources that a state must possess to be able to win a war: the fighting forces proper, popular support, and its allies. Turkey is at a significant disadvantage when it comes to its air force and air defense capabilities. Should a major confrontation erupt, Turkey would not be guaranteed to be able to control the relevant air space. Turkish citizens do not favor seeing their country in a foreign quagmire. Despite myriad differences, Turkey it is still deeply embedded within NATO, and its strategic interests do not differ from those of its strategic allies. Turkey also cannot afford to risk an open military conflict with Russia. The article concludes that Turkey is politically and militarily not capable of fighting a full-scale war in Syria
"Haters back off!" Psychometric Properties of the Coping with Cyberhate Questionnaire and Relationship with Well-being in Spanish Adolescents
Background: Cyberhate is a growing form of online aggression against a person or a group based on race, ethnicity, nationality, sexual orientation, gender, religion, or disability. The present study aims to examine psychometric properties of the Coping with Cyberhate Questionnaire, the prevalence of coping strategies in Spanish adolescents, differences in coping strategies based in sex, age, and victim status, and the association between coping with cyberhate and adolescents' mental well-being. Method: The sample consisted of 1,005 adolescents between 12 and 18 years old (Mage = 14.28 years, SD = 1.63; 51.9% girls) who completed self-report measures on coping strategies, victimization status, and mental well-being. Results: The results of confirmatory factor analyses showed a structure for the Coping with Cyberhate Questionnaire composed of six factors, namely Distal advice, Assertiveness, Helplessness/Selfblame, Close support, Technical coping, and Retaliation. It demonstrated acceptable internal consistency. The three most frequently endorsed coping strategies were Technical coping, Close support, and Assertiveness. In addition, lower Helplessness/Self-blame, and higher Close-support, Assertiveness, and Distal advice were significantly related to adolescents' better mental well-being. Conclusion: Prevention programs that educate adolescents about how to deal with cyberhate are needed
Software pro aplikaci reaktivních opatření na prvcích aktivní obrany počítačové sítě
Software implementuje sadu nástrojů pro podporu automatizovaných a asistovaných reakcí na bezpečnostní události pomocí prvků aktivní obrany v prostředí chráněné vnitřní sítě. Software udržuje přehled o dostupných prvcích aktivní obrany a zpracovává vstupní příkazy od bezpečnostních operátorů nebo automatizovaných bezpečnostních systémů. Tyto příkazy kontroluje, rozděluje a vykonává na příslušných prvcích aktivní obrany s ohledem na jejich funkci, dostupnost, a volnou kapacitu. Aktuální stav prvků aktivní obrany a výsledky prováděných operací software zobrazuje v samostatné aplikaci dashboardu.Software implementuje sadu nástrojů pro podporu automatizovaných a asistovaných reakcí na bezpečnostní události pomocí prvků aktivní obrany v prostředí chráněné vnitřní sítě. Software udržuje přehled o dostupných prvcích aktivní obrany a zpracovává vstupní příkazy od bezpečnostních operátorů nebo automatizovaných bezpečnostních systémů. Tyto příkazy kontroluje, rozděluje a vykonává na příslušných prvcích aktivní obrany s ohledem na jejich funkci, dostupnost, a volnou kapacitu. Aktuální stav prvků aktivní obrany a výsledky prováděných operací software zobrazuje v samostatné aplikaci dashboardu.The software implements a set of tools to support automated and assisted responses to security events using devices for active network defense in a protected internal network environment. The software maintains an overview of available active network defense devices and processes input commands from security operators or automated security systems. It controls, distributes and executes these commands on the relevant devices with regard to their function, availability, and free capacity. The software displays the current status of active network defense devices and the results of performed operations in a separate dashboard application
Weinbergerův koncept právního normativismu
Ota Weinberger se řadí k pokračovatelům normativní právní teorie. Jeho institucionalistická právní teorie představuje soudobé rozpracování konceptu právního normativismu, ke kterému se vždy hlásil.Ota Weinberger is one of the followers of normative legal theory. His institutionalist legal theory represents a contemporary elaboration of the concept of legal normativism to which he always professed
Započtení vazby z jiného trestního řízení do trestu
Příspěvek se věnuje problematice započtení vazby v případě více trestních stíhání jedné osoby. Jde o situaci, kdy v jednom trestním řízení nedošlo k odsouzení, ale byla v něm vykonává vazba a v druhém trestním řízení dojde k uložení trestu odnětí svobody.The article addresses the issue of inclusion of the term of custody into the sentence in cases where the custody was served in criminal proceedings other than those in which the final sentence of imprisonment is being imposed. The autor believes that such inclusion is correct from the viewpoint of the constitutional law and criticizes the current inadequate legislation in this area