New scene 2 (between intro and stack) framing the operational case for a per-host detector. Three consequence cards on the stage — network-level trust scoring, containment before pivot, fast post-attack reset — backed by a prose section that cites IEEE document 9881803 for the trust-aggregation argument. Sidecar md for the paper lands in references/ as a citation note; when the PDF is dropped in with a matching stem it'll show up in the references viewer automatically. Link added to links.md too. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
371 B
371 B
Reference Links
- https://github.com/mitre/caldera?tab=security-ov-file
- https://github.com/PiyushxJangid/DLHIDS
- https://github.com/ArpanDFrank/Host-Intrusion-Detection-System-using-Hybrid-CNN-LSTM-Models-and-RL-Actor-Critic-Models
- https://ieeexplore.ieee.org/document/9881803 — per-device trust establishment from network behaviour (cited on motivation scene)