Skip to content
NCC Group Research

NCC Group Research

Making the world safer and more secure

  • Privacy
  • Careers
  • Disclosure Policy
  • Technical Advisories
  • Public Reports
  • 2021 Research Report

Tag: metadata

Encryption Does Not Equal Invisibility – Detecting Anomalous TLS Certificates with the Half-Space-Trees Algorithm

tl;dr An approach to detecting suspicious TLS certificates using an incremental anomaly detection model is discussed. This model utilizes the Half-Space-Trees algorithm and provides our security operations teams (SOC) with the opportunity to detect suspicious behavior, in real-time, even when network traffic is encrypted.  The prevalence of encrypted traffic As a company that provides Managed Network … Continue reading Encryption Does Not Equal Invisibility – Detecting Anomalous TLS Certificates with the Half-Space-Trees Algorithm →

Margit Hazenbroek Fox-IT, Machine Learning, Managed Detection & Response, Research December 2, 2021December 6, 2021 8 Minutes
 

Loading Comments...