Graph-Based ML for Detecting Anomalies in SELinux Policies
Graph-Based ML for Detecting Anomalies in SELinux Policies
We're working on a way to tackle the complexity of SELinux policies by using graph-based machine learning to automate policy analysis and anomaly detection. SELinux enforces security through strict access controls, but the intricacy of its policies makes it hard to manage and troubleshoot effectively. Our approach represents policies as graphs and uses node embedding (like Node2Vec) to train models for identifying policy violations more efficiently. SELinux has become widely adopted for security on Linux systems, but misconfigured policies can lead to unauthorized actions and security issues. Our method aims to make it easier for admins to detect and adjust misconfigurations, potentially reducing vulnerability risks. Early results are promising, and we’re excited about the potential to make SELinux management more intuitive. IEEE ICIR (2024) - KJ
Share cardActual performance
Launch Intel predictions
Analyze your own launch →Incorrect prediction on native model
Similar products
ONNX-Based ML Deployments
Changewatch – see what’s changed between versions of policies
Basic ML Platform based on Pulumi, DVC, MLFlow and more
Graph-Based Dungeon Generator
Egsis: Exploratory Graph-Based Semi-Supervised Image Segmentation
EliasDB a graph based database in Go
GraphQL+-, a Variant of GraphQL for Graph DBs
Election Lie Graph
Weighted # of Lies from Each Candidate (Graph)
MongoDB + GraphViz = mongo-graph