The document proposes a new model for detecting unknown cyber-attacks, particularly advanced persistent threats (APTs), using big data analysis techniques. It discusses the limitations of existing security systems that rely on pattern matching and emphasizes the need for innovative detection methods to respond to sophisticated attacks on critical infrastructures. The proposed system includes data collection, behavior matching using genetic algorithms, and alert generation when unknown threats are detected.