1 Problem Statement
  • APT are targeted attack on an organization. The attackers have patience and moves latterly in days and months. Many times it moves in parts.
  • An agent based solution should be worked out to model the user, computer and his network behavior over the time by interacting with user(s). The change in the behavior should be notified to central server which will further generate action to monitor similar behavior in other machines. Finally, model should generate alert about the probable attack along with confidence level.

Notes: Participant should simulate a small network under a APT attack to demonstrate their solution.

Sample Data Required: Data should be simulated by participants