Dailydave mailing list archives
Machine Learning and Dimensions and stuff
From: Dave Aitel <dave () immunityinc com>
Date: Thu, 20 Nov 2014 13:16:39 -0500
https://vimeo.com/112322888 Dmitri pointed me at the above talk which is essentially a good specialized 101-level lecture on how machine learning works in the security space. There's not much to criticize in the talk! (It has a lot of the features of El Jefe!) They use a real graph database to run their algorithms against process trees - but if you wanted to heckle you'd ask "Doesn't the CreateProcess() system call also take "parent process" as an argument? What IS the rate of false positives? Because if you can't get it down to basically 0 then you are essentially wasting your time? etc." :> But again, nobody asked any hard questions - and while the talk nibbled around the edges of the tradeoffs with using machine learning techniques on this kind of data, it didn't go into any depth at all about which ones they've tried and failed at. It's a technical talk, but it's not a DETAILED talk in the sense of "Here's some outliers that show us where we fail and where we succeed and perhaps why". That said, if you don't have a plan to do this sort of thing, then you're probably failing at some level, so worth a watch. :> -dave
Attachment:
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Dailydave mailing list Dailydave () lists immunityinc com https://lists.immunityinc.com/mailman/listinfo/dailydave
Current thread:
- Machine Learning and Dimensions and stuff Dave Aitel (Nov 20)
- Re: Machine Learning and Dimensions and stuff Halvar Flake (Nov 20)
- Re: Machine Learning and Dimensions and stuff William Kupersanin (Nov 21)
- Re: Machine Learning and Dimensions and stuff shadown [at] gmail (Nov 22)
- Re: Machine Learning and Dimensions and stuff William Kupersanin (Nov 22)
- Re: Machine Learning and Dimensions and stuff Halvar Flake (Nov 22)
- Re: Machine Learning and Dimensions and stuff Parity (Nov 22)
- Re: Machine Learning and Dimensions and stuff William Kupersanin (Nov 21)
- Re: Machine Learning and Dimensions and stuff Halvar Flake (Nov 20)
- <Possible follow-ups>
- Re: Machine Learning and Dimensions and stuff Sven Krasser (Nov 24)
- Re: Machine Learning and Dimensions and stuff Oleg Kolesnikov (Nov 27)