Discovering Significant Co-Occurrences to Characterize Network Behaviors

被引:0
|
作者
Arthur-Durett, Kristine [1 ]
Carroll, Thomas E. [1 ]
Chikkagoudar, Satish [2 ]
机构
[1] Pacific Northwest Natl Lab, Richland, WA 99352 USA
[2] US Naval Res Lab, Washington, DC USA
关键词
Cyber situation awareness; Significant co-occurrence detection; Temporal relationship discovery; Robust correlation;
D O I
10.1007/978-3-319-92043-6_49
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
A key aspect of computer network defense and operations is the characterization of network behaviors. Several of these behaviors are a result of indirect interactions between various networked entities and are temporal in nature. Modeling them requires non-trivial and scalable approaches. We introduce a novel approach for characterizing network behaviors using significant co-occurrence discovery. A significant co-occurrence is a robust concurrence or coincidence of events or activities observed over a period of time. We formulate a network problem in the context of co-occurrence detection and propose an approach to detect co-occurrences in network flow information. The problem is a generalization of problems that are encountered in the areas of dependency discovery and related activity identification. Moreover, we define a set of metrics to determine robust characteristics of these co-occurrences. We demonstrate the approach, exercising it first on a simulated network trace, and second on a publicly-available anonymized network trace from CAIDA. We show that co-occurrences can identify interesting relationships and that the proposed algorithm can be an effective tool in network flow analysis.
引用
收藏
页码:609 / 623
页数:15
相关论文
共 50 条
  • [1] Network inference from co-occurrences
    Rabbat, Michael G.
    Figueiredo, Mario A. T.
    Nowak, Robert D.
    [J]. IEEE TRANSACTIONS ON INFORMATION THEORY, 2008, 54 (09) : 4053 - 4068
  • [2] Co-occurrences of / and /
    Badiou-Monferran, Claire
    Capin, Daniela
    [J]. CEDILLE-REVISTA DE ESTUDIOS FRANCESES, 2021, (19): : 89 - 125
  • [3] Using codispersion analysis to characterize spatial patterns in species co-occurrences
    Buckley, Hannah L.
    Case, Bradley S.
    Ellison, Aaron M.
    [J]. ECOLOGY, 2016, 97 (01) : 32 - 39
  • [4] Network analysis of named entity co-occurrences in written texts
    Amancio, Diego Raphael
    [J]. EPL, 2016, 114 (05)
  • [5] SOME CO-OCCURRENCES IN AMERICAN CLICHES
    CROFT, K
    [J]. TESOL QUARTERLY, 1967, 1 (02) : 47 - 49
  • [6] Laughter and smiling: Notes on co-occurrences
    Haakana, Markku
    [J]. JOURNAL OF PRAGMATICS, 2010, 42 (06) : 1499 - 1512
  • [7] Isolating interactions from co-occurrences
    Kevin Cazelles
    [J]. Nature Ecology & Evolution, 2024, 8 : 184 - 185
  • [8] THE MARATHI VERBAL SEQUENCES AND THEIR CO-OCCURRENCES
    SOUTHWORTH, FC
    [J]. LANGUAGE, 1961, 37 (02) : 201 - 208
  • [9] Scraping Public Co-Occurrences for Statistical Network Analysis of Political Elites
    Mahdavi, Paasha
    [J]. POLITICAL SCIENCE RESEARCH AND METHODS, 2019, 7 (02) : 385 - 392
  • [10] Isolating interactions from co-occurrences
    Cazelles, Kevin
    [J]. NATURE ECOLOGY & EVOLUTION, 2024, 8 (02) : 184 - 185