NORMA eResearch @NCI Library

Optimizing FIM System Using YARA Rules

Wattamwar, Kedar Sunil (2023) Optimizing FIM System Using YARA Rules. Masters thesis, Dublin, National College of Ireland.

[thumbnail of Master of Science]
Preview
PDF (Master of Science)
Download (1MB) | Preview
[thumbnail of Configuration Manual]
Preview
PDF (Configuration Manual)
Download (487kB) | Preview

Abstract

In terms of functionality and confidentiality, sensitive files in computer systems, such as log files, executable programmes, configuration, and authorization data, are extremely important. By confirming every operation taken on these sensitive files, an efficient method known as file integrity monitoring is suggested to identify aggressive behaviours and safeguarding sensitive data. This paper presents a solution which continuously check the integrity of files and also gives an alert for addition or deletion of files. The method is also capable to detect and report if the added file is malicious or not. This research is significant because it has the potential to improve computer system security by lowering the possibility of malicious or unauthorised file additions or modifications, which lowers the chance of security breaches and system disruptions.

Item Type: Thesis (Masters)
Supervisors:
Name
Email
Sahni, Vikas
UNSPECIFIED
Subjects: Q Science > QA Mathematics > Electronic computers. Computer science
T Technology > T Technology (General) > Information Technology > Electronic computers. Computer science
Q Science > QA Mathematics > Computer software
T Technology > T Technology (General) > Information Technology > Computer software
Q Science > QA Mathematics > Computer software > Computer Security
T Technology > T Technology (General) > Information Technology > Computer software > Computer Security
Divisions: School of Computing > Master of Science in Cyber Security
Depositing User: Ciara O'Brien
Date Deposited: 26 Apr 2025 10:23
Last Modified: 26 Apr 2025 10:23
URI: https://norma.ncirl.ie/id/eprint/7478

Actions (login required)

View Item View Item