כתבה
arXiv cs.AI ·
גילוי חדירה מבוזרת: מ-NIDS ל-EDR
From Network Intrusion Detection to Blockchain-Backed Endpoint Detection and Response: Mapping the Landscape of Decentralized Detection-and-Response Architectures
מחקר זה מציג סקירה שיטתית של ארכיטקטורות מבוזרות לגילוי ותגובה. הוא מציע מודל טקסונומי לסיווג הצעות לפי סוג מערכת גילוי, תפקיד תפקודי של בלוקצ'יין ובשלות אוטומציה של תגובה. המחקר מעלה אתגרים מבניים וטכנולוגיים ביישום מערכות אלו.
תקציר מקורי באנגליתarXiv:2610.01872v1 Announce Type: cross Abstract: While the literature on blockchain-assisted intrusion detection and prevention systems (IDS/IPS) for Internet of Things (IoT) and Industrial Internet of Things (IIoT) networks is mature, existing systematic reviews suffer from two critical limitations: they overlook the structural shift toward modern Endpoint Detection and Response (EDR) and Extended Detection and Response (XDR) architectures, and they conflate blockchain's distinct functional roles into a single monolithic category. This Systematization of Knowledge (SoK) addresses these gaps by proposing a three-axis taxonomy that classifies proposals by detection-system class (NIDS, HIDS, EDR/XDR), blockchain functional role, and response-automation maturity. Synthesizing research publis
קרא במקור המקורי
arxiv.org
פתח כתבה מקורית