Tactical provenance analysis for endpoint detection and response systems

WU Hassan, A Bates, D Marino - 2020 IEEE Symposium on …, 2020 - ieeexplore.ieee.org
Endpoint Detection and Response (EDR) tools provide visibility into sophisticated intrusions
by matching system events against known adversarial behaviors. However, current solutions …

Flow event telemetry on programmable data plane

Y Zhou, C Sun, HH Liu, R Miao, S Bai, B Li… - Proceedings of the …, 2020 - dl.acm.org
Network performance anomalies (NPAs), eg long-tailed latency, bandwidth decline, etc., are
increasingly crucial to cloud providers as applications are getting more sensitive to …

[图书][B] Distributed tracing in practice: Instrumenting, analyzing, and debugging microservices

A Parker, D Spoonhower, J Mace, B Sigelman… - 2020 - books.google.com
Most applications today are distributed in some fashion. Monitoring the health and
performance of these distributed architectures requires a new approach. Enter distributed …

[PDF][PDF] 互联网内生安全体系结构研究进展

徐恪, 付松涛, 李琦, 刘冰洋, 江伟玉, 吴波, 冯学伟 - 计算机学报, 2021 - 159.226.43.17
摘要随着互联网不断发展, 网络功能逐步走向万物互联下自动交互与控制, 大数据, 云计算,
边缘计算等技术不断深入应用, 传统网络面临的源地址欺骗, DDoS 攻击, 路由劫持等安全问题 …

Secure and efficient distributed network provenance for IoT: A blockchain-based approach

D Liu, J Ni, C Huang, X Lin… - IEEE Internet of Things …, 2020 - ieeexplore.ieee.org
Network provenance is essential for Internet-of-Things (IoT) network administrators to
conduct the network diagnostics and identify root causes of network errors. However, the …

tprof: Performance profiling via structural aggregation and automated analysis of distributed systems traces

L Huang, T Zhu - Proceedings of the ACM Symposium on Cloud …, 2021 - dl.acm.org
The traditional approach for performance debugging relies upon performance profilers (eg,
gprof, VTune) that provide average function runtime information. These aggregate statistics …

Murphy: Performance diagnosis of distributed cloud applications

V Harsh, W Zhou, S Ashok, RN Mysore… - Proceedings of the …, 2023 - dl.acm.org
Modern cloud-based applications have complex inter-dependencies on both distributed
application components as well as network infrastructure, making it difficult to reason about …

Sifter: Scalable sampling for distributed traces, without feature engineering

P Las-Casas, G Papakerashvili, V Anand… - Proceedings of the ACM …, 2019 - dl.acm.org
Distributed tracing is a core component of cloud and datacenter systems, and provides
visibility into their end-to-end runtime behavior. To reduce computational and storage …

The Tale of Errors in Microservices

ITA Lee, Z Zhang, A Parwal, M Chabbi - Proceedings of the ACM on …, 2024 - dl.acm.org
Microservice architecture is the computing paradigm of choice for large, service-oriented
software catering to real-time requests. Individual programs in such a system perform …

Gringotts: fast and accurate internal denial-of-wallet detection for serverless computing

J Shen, H Zhang, Y Geng, J Li, J Wang… - Proceedings of the 2022 …, 2022 - dl.acm.org
Serverless computing, or Function-as-a-Service, is gaining continuous popularity due to its
pay-as-you-go billing model, flexibility, and low costs. These characteristics, however, bring …