Merging Guaranteed Possibilistic Bases to Rank IDS Alerts

被引:0
|
作者
Bouzar-Benlabiod, Lydia [1 ]
Meziani, Lila [1 ]
Rim, Nacer-Eddine [1 ]
Mellal, Zakaria [1 ]
机构
[1] Ecole Natl Super Informat, Lab Commun Syst Informat, BP 68M, Oued Smar 16309, Alger, Algeria
关键词
IDS alerts; Preferences merging; Guaranteed possibilistic logic; IFO formulas;
D O I
10.1007/978-3-319-92058-0_27
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Intrusion Detection Systems (IDS) are security tools that generate alerts when detecting a malicious activity. The main drawback of IDS is the high number of generated alerts. We propose an approach that integrates the preferences of several security experts to rank IDS results. The experts' preferences are expressed either in IFO-BCF (Instantiated First Order) logic or in IFO-guaranteed possibilistic one. A new logical preferences merging algorithm is given, it takes in input the different experts' preferences and produces a unique preferences base. The resulted preferences base is used to rank the IDS alerts.
引用
收藏
页码:286 / 291
页数:6
相关论文
共 50 条
  • [1] Belief Merging for Possibilistic Belief Bases
    Thi Thanh Luu Le
    Trong Hieu Tran
    [J]. ADVANCED COMPUTATIONAL METHODS FOR KNOWLEDGE ENGINEERING (ICCSAMA 2019), 2020, 1121 : 370 - 380
  • [2] A Framework for Merging Possibilistic Knowledge Bases
    Thi Thanh Luu Le
    [J]. INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2019, PT II, 2019, 11432 : 65 - 76
  • [3] Experts' knowledge merging to reduce IDS alerts number
    Bouzar-Benlabiod, Lydia
    Meziani, Lila
    Chebieb, Abdelkrim
    Rim, Nacer-Eddine
    Mellal, Zakaria
    [J]. 2016 INTERNATIONAL CONFERENCE ON COLLABORATION TECHNOLOGIES AND SYSTEMS (CTS), 2016, : 418 - 423
  • [4] Merging Possibilistic Belief Bases by Argumentation
    Thi Hong Khanh Nguyen
    Trong Hieu Tran
    Tran Van Nguyen
    Thi Thanh Luu Le
    [J]. INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2017, PT I, 2017, 10191 : 24 - 34
  • [5] A split-combination approach to merging knowledge bases in possibilistic logic
    Qi, Guilin
    Liu, Weiru
    Glass, David H.
    Bell, David A.
    [J]. ANNALS OF MATHEMATICS AND ARTIFICIAL INTELLIGENCE, 2006, 48 (1-2) : 45 - 84
  • [6] A split-combination approach to merging knowledge bases in possibilistic logic
    Guilin Qi
    Weiru Liu
    David H. Glass
    David A. Bell
    [J]. Annals of Mathematics and Artificial Intelligence, 2006, 48 : 45 - 84
  • [7] Improving the management of IDS alerts
    Tu Hoang Nguyen
    Luo, JiaWei
    Njogu, Humphrey Waita
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (03): : 393 - 406
  • [8] Modeling Alerts for IDS Correlation
    Roschke, Sebastian
    Cheng, Feng
    Meinel, Christoph
    [J]. JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2011, 6 (02): : 98 - 105
  • [9] Merging possibilistic networks
    Benferhat, Salem
    [J]. ECAI 2006, PROCEEDINGS, 2006, 141 : 332 - +
  • [10] Possibilistic logic bases and possibilistic graphs
    Benferhat, S
    Dubois, D
    Garcia, L
    Prade, H
    [J]. UNCERTAINTY IN ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 1999, : 57 - 64