You are in: Articles / Studies & Benchmarks / Researchers Map Method for Spotting Suspicious Insiders
 
  • USENIX OSDI '08
    The 8th USENIX Symposium on Operating Systems Design and...
  • linux.conf.au
    The 10th edition of linux.conf.au will take place on January 21-24,...
 
 

Researchers Map Method for Spotting Suspicious Insiders

Mining of email data could help companies spot dangerous employees before they do damage.

Three researchers at the Air Force Institute of Technology -- James Okolica, Gilbert Peterson, and Robert Mills -- have published a paper that outlines an algorithm for mining email data and identifying patterns of transmission that might tell managers when employees are keeping a secret.

In a nutshell, the algorithm identifies email topics of interest that are communicated outside the organization, but never shared with others inside the organization. The identification of such topics indicates that employees "either have a secret interest in the topic or generally feel alienated from the organization," the paper says.

In the study, researchers applied a data mining concept called Probabilistic Latent Semantic Indexing (PLSI), which has been used to extract specific information from a large body of data. By adding users to the body of data being studied, the researchers were able to identify patterns of content exchanged between specific users.

 
 
|
|
Rating: 12345
 
Leave a comment



Note: all fields marked with (*) are required
Comments (0)
 
Close send to email window
 



Verification code

Already a member?
Blacklist monitoring alerts
sign up Signup for our real-time monitoring service and receive email notifications each time one of your IPs gets blacklisted.
Free Signup
Mail Server Operating System Poll
.01

What OS do you use for your email server?
Linux
Windows
Other
disabled next
.02

How many mailboxes do you currently manage?
1-50
51-300
300+
previous next
.03

Would you like to comment upon the choosing of this particular OS?

previous
 
DNS Tools
Get IP status, owner and location, obtain its corresponding hostname or check specific ports.
Ping Statistics
Reverse DNS Lookup
Whois Info (IP owner)
GeoIP Information
Check Port
Open Relay Test
Test if your mail server is an open relay for spammers.
Blacklist Checker
Check if your IP is listed in DNS based email blacklists (DNSBL)