Журнал «Современная Наука»

Russian (CIS)English (United Kingdom)
MOSCOW +7(495)-142-86-81

RESEARCH ON LIVING OFF THE LAND ATTACKS AND DEVELOPMENT OF DETECTION METHODOLOGY

Rogov Maxim Alekseevich  (Information Security Engineer, LLC "Yandex.Technologies", Moscow)

The article is dedicated to the study of Living Off the Land attacks, which are increasingly being used by malicious actors for covert movement within internal networks. Special attention is given to the development of a methodology for their detection. Purpose of the work: The study aims to investigate the structure and characteristics of Living Off the Land (LOTL) attacks in corporate IT environments to identify patterns that can definitively detect such attacks and develop recommendations for protection against them. Research Method: A systematic analysis of open sources on the use of publicly available information security practices to implement methods for protecting information systems from Living Off the Land attacks. Results: The study explores Living Off the Land attacks and formulates a methodology for detecting them in computer systems and networks based on log analysis. Scientific novelty: Information protection methods are systematized with regard to the use of technologies embedded in operating systems, specifically concerning information security. Threats posed by Living Off the Land attacks are classified, and methods for protection against such attacks are developed.

Keywords:information security, data protection, antivirus evasion techniques, information security threats, cybersecurity

 

Read the full article …



Citation link:
Rogov M. A. RESEARCH ON LIVING OFF THE LAND ATTACKS AND DEVELOPMENT OF DETECTION METHODOLOGY // Современная наука: актуальные проблемы теории и практики. Серия: Естественные и Технические Науки. -2024. -№10. -С. 130-138 DOI 10.37882/2223-2966.2024.10.34
LEGAL INFORMATION:
Reproduction of materials is permitted only for non-commercial purposes with reference to the original publication. Protected by the laws of the Russian Federation. Any violations of the law are prosecuted.
© ООО "Научные технологии"