Cyber Security Situation Awareness Based on Data Mining

被引:0
|
作者
Liu Jie [1 ]
Feng Xuewei [1 ,2 ]
Li Jin [1 ,2 ]
Wang Dongxia [1 ,2 ]
机构
[1] Beijing Inst Syst Engineer, Beijing 100101, Peoples R China
[2] Nation Key Lab Sci & Technol Informat Syst Secur, Beijing 100101, Peoples R China
基金
中国国家自然科学基金;
关键词
cyber security; situation awareness; correlation state machine; threat prediction; threat assessment;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Situation awareness is a kind of the third generation of information security technology, which aims to provide the global security views of the cyberspace for administrators. A framework of cyber security situation awareness based on data mining is proposed in this paper. The framework can be viewed from two perspectives, one is data flow, which presents the abstracting of cyber data, and the other one is logic view, which presents the procedure of situation awareness. The framework's core component is correlation state machine, which is an extension of state machine. The correlation state machine is a data structure of achieving situation awareness, which is created based on the technology of data mining. After being created, it can be used to assess and predict the threat situation to achieve cyber knowledge. We conclude with an example of how the framework can be applied to real world to provide cyber security situation for administrators.
引用
收藏
页码:254 / 258
页数:5
相关论文
共 50 条
  • [1] Network awareness of security situation information security measurement method based on data mining
    Wang, Jia
    Zhang, Ke
    Li, Jingyuan
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2024, 46 (01) : 209 - 219
  • [2] Ensemble Visualization For Cyber Situation Awareness of Network Security Data
    Hao, Lihua
    Healey, Christopher G.
    Hutchinson, Steve E.
    [J]. 2015 IEEE SYMPOSIUM ON VISUALIZATION FOR CYBER SECURITY (VIZSEC), 2015,
  • [3] A Cloud Computing Based Architecture for Cyber Security Situation Awareness
    Yu, Wei
    Xu, Guobin
    Chen, Zhijiang
    Moulema, Paul
    [J]. 2013 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2013, : 488 - 492
  • [4] Multi-sensor Data Fusion for Cyber Security Situation Awareness
    Zhang, Yan
    Huang, Shuguang
    Guo, Shize
    Zhu, Junmao
    [J]. 2011 3RD INTERNATIONAL CONFERENCE ON ENVIRONMENTAL SCIENCE AND INFORMATION APPLICATION TECHNOLOGY ESIAT 2011, VOL 10, PT B, 2011, 10 : 1029 - 1034
  • [5] Visualization of Security Metrics for Cyber Situation Awareness
    Kotenko, Igor
    Novikova, Evgenia
    [J]. 2014 NINTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES), 2015, : 506 - 513
  • [6] Research on data mining method of network security situation awareness based on cloud computing
    Zhou, Ying
    Zhao, Guodong
    Alroobaea, Roobaea
    Baqasah, Abdullah M.
    Miglani, Rajan
    [J]. JOURNAL OF INTELLIGENT SYSTEMS, 2022, 31 (01) : 520 - 531
  • [7] Data mining and Cyber security
    Thuraisingham, B
    [J]. THIRD INTERNATIONAL CONFERENCE ON QUALITY SOFTWARE, PROCEEDINGS, 2003, : 2 - 2
  • [8] On Detection and Visualization Techniques for Cyber Security Situation Awareness
    Yu, Wei
    Wei, Sixiao
    Shen, Dan
    Blowers, Misty
    Blasch, Erik P.
    Pham, Khanh D.
    Chen, Genshe
    Zhang, Hanlin
    Lu, Chao
    [J]. SENSORS AND SYSTEMS FOR SPACE APPLICATIONS VI, 2013, 8739
  • [9] Implemention of Cyber Security Situation Awareness Based on Knowledge Discovery with Trusted Computer
    Zeng, Jiemei
    Feng, Xuewei
    Wang, Dongxia
    Fang, Lan
    [J]. WEB TECHNOLOGIES AND APPLICATIONS, APWEB 2014, PT II, 2014, 8710 : 225 - 234
  • [10] Data Mining and Its Cyber Security
    Qiang, Xinjian
    Cheng, Guojian
    Xiao, Hong
    [J]. 2011 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL, AND SYSTEMS SCIENCES, AND ENGINEERING (CESSE 2011), 2011, : 218 - 221