{"id":"W4292826129","doi":"10.1007/978-3-031-15777-6_30","title":"TapTree: Process-Tree Based Host Behavior Modeling and Threat Detection Framework via Sequential Pattern Mining","year":2022,"lang":"en","type":"book-chapter","venue":"Lecture notes in computer science","topic":"Software System Performance and Reliability","field":"Computer Science","cited_by":1,"is_retracted":false,"has_abstract":false,"ca_institutions":"National Research Council Canada; Research and Productivity Council","funders":"University of Windsor","keywords":"Computer science; Semantics (computer science); Benchmark (surveying); Data mining; Process (computing); Behavioral pattern; Abstraction; Pattern matching; Tree (set theory); Host (biology); Event (particle physics); Audit; Artificial intelligence; Software engineering; Programming language","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.0007489613,0.000762295,0.0008941486,0.00122613,0.0004340511,0.001221008,0.002047376,0.0007138334,0.002602042],"category_scores_gemma":[0.002218868,0.0004403478,0.001212649,0.0013446,0.0003025676,0.001733741,0.0009553637,0.001089513,0.0008550623],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0005475223,"about_ca_system_score_gemma":0.001327723,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.008704955,"about_ca_topic_score_gemma":0.01026955,"domain_scores_codex":[0.9995801,0.00008033735,0.00002859767,0.0001052337,0.0001655388,0.00004020226],"domain_scores_gemma":[0.999501,0.0002387572,0.0000554696,0.00006718707,0.0001024569,0.00003505721],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0002293304,0.0002608516,0.005506417,0.0003472665,0.0002559318,0.0004023582,0.0002357305,0.654861,0.006442189,0.04629643,0.01149107,0.2736715],"study_design_scores_gemma":[0.000003935754,0.00001288376,0.0001730671,0.000005619447,0.00001278454,0.00003791038,0.00001137101,0.9894285,0.0004826344,0.008523567,0.001302522,0.00000529747],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.004685072,0.0001170961,0.9907219,0.00006543507,0.00001528841,0.00006185003,0.0005276545,0.003163274,0.0006424008],"genre_scores_gemma":[0.2196521,0.0004848838,0.7736303,0.00009604633,0.0000383905,0.0002765252,0.002629179,0.0003958537,0.002796799],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.008704955,"threshold_uncertainty_score":0.01730859,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.01755324058302649,"score_gpt":0.2561067289819465,"score_spread":0.23855348839892,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}