kth.sePublikationer KTH
Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Detection of Emerging Cyberthreats Through Active Learning
KTH, Skolan för elektroteknik och datavetenskap (EECS), Datavetenskap, Teoretisk datalogi, TCS. FOI Swedish Defence Research Agency, Stockholm, Sweden.ORCID-id: 0000-0002-2677-9759
AI Vision Sweden AB, Sweden.
FOI Swedish Defence Research Agency, Stockholm, Sweden.
2025 (Engelska)Ingår i: Recent Advances in Deep Learning Applications: New Techniques and Practical Examples / [ed] Uche Onyekpe, Vasile Palade, M. Arif Wani, Informa UK Limited , 2025, s. 123-144Kapitel i bok, del av antologi (Övrigt vetenskapligt)
Abstract [en]

In the realm of cybersecurity, leveraging machine learning holds promise for advancing threat detection capabilities. Yet, the sheer volume of unlabeled data presents a challenging hurdle to efficient data management. This chapter delves into the efficacy of active learning methodologies in alleviating the burden of manual data labeling. By employing various query strategies, the study identifies the most informative unlabeled data points suitable for labeling. Examining the performance across different query strategies involved testing a transformer model's ability in discerning tweets referencing advanced persistent threats. In scenarios where labeled training data is scarce, the results suggest that the K-means diversity-based query strategy outperforms both the uncertainty-based approach and the random data point selection. Furthermore, the study investigated the cost-effective active learning paradigm, which integrates high-confidence data points into the training dataset. Surprisingly, this approach emerged as the least effective strategy. In summary, the findings not only explain the potential of active learning in cybersecurity, but also underscore the importance of strategic data selection in optimizing model performance. 

Ort, förlag, år, upplaga, sidor
Informa UK Limited , 2025. s. 123-144
Nationell ämneskategori
Säkerhet, integritet och kryptologi
Identifikatorer
URN: urn:nbn:se:kth:diva-374103DOI: 10.1201/9781003570882-9Scopus ID: 2-s2.0-105022862964OAI: oai:DiVA.org:kth-374103DiVA, id: diva2:2022167
Anmärkning

Part of ISBN 9781032944623, 9781040323977

QC 20251216

Tillgänglig från: 2025-12-16 Skapad: 2025-12-16 Senast uppdaterad: 2025-12-16Bibliografiskt granskad

Open Access i DiVA

Fulltext saknas i DiVA

Övriga länkar

Förlagets fulltextScopus

Person

Brynielsson, Joel

Sök vidare i DiVA

Av författaren/redaktören
Brynielsson, Joel
Av organisationen
Teoretisk datalogi, TCS
Säkerhet, integritet och kryptologi

Sök vidare utanför DiVA

GoogleGoogle Scholar

doi
urn-nbn

Altmetricpoäng

doi
urn-nbn
Totalt: 85 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf