• Open Daily: 10am - 10pm
    Alley-side Pickup: 10am - 7pm

    3038 Hennepin Ave Minneapolis, MN
    612-822-4611

Open Daily: 10am - 10pm | Alley-side Pickup: 10am - 7pm
3038 Hennepin Ave Minneapolis, MN
612-822-4611
Insider Threat Detection Using Microsoft Log Files

Insider Threat Detection Using Microsoft Log Files

Hardcover

Operating SystemsProgrammingComputer Security

ISBN10: 1025118022
ISBN13: 9781025118024
Publisher: Hutson Street Press
Published: May 22 2025
Pages: 144
Weight: 0.84
Height: 0.38 Width: 6.14 Depth: 9.21
Language: English

Many threats to a network are not detected in a timely manner. Some are found hours or even days after the threat occurs. This research enhances threat detection in networks by parsing log data from the Windows event viewer. The data is processed in real time, and the notification of a threat results in the immediate sending of an email alertto the administrator. This notification is an imperative first step which alerts administrators of a possible threat that needs to be fully investigated. It was found that timely auditing of all components of the Microsoft Event Log, along with a script running to monitor these events on all network systems, can alert an administrator immediately of a potential threat situation on the network via email, resulting in more efficient defense tactics.

1 different editions

Also available

Also from

Krug, Michelle C.

Also in

Computer Security