Intrusion activity projection for cyber situational awareness

被引:9
|
作者
Yang, Shanchieh J. [1 ]
Byers, Stephen [1 ]
Holsopple, Jared [2 ]
Argauer, Brian [1 ]
Fava, Daniel [1 ]
机构
[1] Rochester Inst Technol, Dept Comp Engn, Rochester, NY 14623 USA
[2] SUNY Buffalo, Ctr Multisource Informat Fusion, New York, NY USA
关键词
D O I
10.1109/ISI.2008.4565048
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Previous works in the area of network security have emphasized the creation of Intrusion Detection Systems (IDSs) to flag malicious network traffic and computer usage. Raw IDS data may be correlated and form attack tracks, each of which consists of ordered collections of alerts belonging to a single multi-stage attack. Assessing an attack track in its early stage may reveal the attacker's capability and behavior trends, leading to projections of future intrusion activities. Behavior trends are captured via Variable Length Markov Models (VLMM) without predetermined attack plans. A virtual terrain schema is developed to model network and system configurations, and used to estimate critical elements and vulnerabilities exposed to each attacker given his/her progress. Experimental results show promises for these proactive measures in ensuring continuous and critical cyber operations.
引用
收藏
页码:167 / +
页数:2
相关论文
共 50 条
  • [21] Cyber-Situational Awareness in the Presence of Encryption
    Ceesay, Ebrima N.
    Do, Thach N.
    Watters, Paul A.
    [J]. 2017 IEEE 7TH ANNUAL INTERNATIONAL CONFERENCE ON CYBER TECHNOLOGY IN AUTOMATION, CONTROL, AND INTELLIGENT SYSTEMS (CYBER), 2017, : 1621 - 1626
  • [22] CRUSOE: Data Model for Cyber Situational Awareness
    Komarkova, Jana
    Husak, Martin
    Lastovicka, Martin
    Tovarnak, Daniel
    [J]. 13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [23] Framework for risk assessment in cyber situational awareness
    Xi Rongrong
    Yun Xiaochun
    Hao Zhiyu
    [J]. IET INFORMATION SECURITY, 2019, 13 (02) : 149 - 156
  • [24] Cyber Resilience, Societal Situational Awareness for SME
    van Kranenburg, Rob
    Bohara, Rohit
    Yahalom, Raphael
    Ross, Mirko
    [J]. 2023 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2023, : 458 - 463
  • [25] Trusted information sharing for cyber situational awareness
    Sutton, D.
    [J]. ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2015, 132 (02): : 113 - 116
  • [26] Visual Cyber Situational Awareness for Critical Infrastructure
    Angelini, Marco
    Santucci, Giuseppe
    [J]. 8TH INTERNATIONAL SYMPOSIUM ON VISUAL INFORMATION COMMUNICATION AND INTERACTION (VINCI 2015), 2015, : 83 - 92
  • [27] Cyber Situational Awareness and Mission-Centric Resilient Cyber Defense
    Lei, Jingmin
    [J]. PROCEEDINGS OF 2015 4TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT 2015), 2015, : 1218 - 1225
  • [28] Study on Cyber Common Operational Picture Framework for Cyber Situational Awareness
    Kim, Kookjin
    Youn, Jaepil
    Yoon, Sukjoon
    Kang, Jiwon
    Kim, Kyungshin
    Shin, Dongkyoo
    [J]. APPLIED SCIENCES-BASEL, 2023, 13 (04):
  • [29] Deep learning with blockchain based cyber security threat intelligence and situational awareness system for intrusion alert prediction
    Mohan, J. S. Shyam
    Thirunavukkarasu, M.
    Kumaran, N.
    Thamaraiselvi, D.
    [J]. SUSTAINABLE COMPUTING-INFORMATICS & SYSTEMS, 2024, 42
  • [30] Systematic Literature Review on Cyber Situational Awareness Visualizations
    Jiang, Liuyue
    Jayatilaka, Asangi
    Nasim, Mehwish
    Grobler, Marthie
    Zahedi, Mansooreh
    Babar, M. Ali
    [J]. IEEE ACCESS, 2022, 10 : 57525 - 57554