A Novel Approach to Network Security Situation Assessment Based on Attack Confidence

被引:3
|
作者
Liu, Donghang [1 ,2 ]
Dong, Lihua [1 ]
Lv, Shaoqing [3 ]
Dong, Ying [2 ]
He, Fannv [2 ]
Wu, Chensi [2 ]
Zhang, Yuqing [2 ]
Ma, Hua [4 ]
机构
[1] Xidian Univ, State Key Lab Integrated Serv Network, Xian, Shaanxi, Peoples R China
[2] Univ Chinese Acad Sci, Natl Comp Network Intrus Protect Ctr, Beijing, Peoples R China
[3] Xian Univ Posts & Telecommun, Shaanxi Key Lab Informat Commun Network & Secur, Xian, Shaanxi, Peoples R China
[4] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing, Peoples R China
来源
NETWORK AND SYSTEM SECURITY | 2017年 / 10394卷
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
Network security situation assessment; Attack confidence; Ensemble learning; D-S evidence theory; Information fusion;
D O I
10.1007/978-3-319-64701-2_33
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As an active topic in the research field, network security situation assessment can reflect the security situation from a global perspective. However, existing assessment approaches rely on detection threshold to make decisions, leading to massive false positives and false negatives. This paper proposes a confidence-based network security situation assessment approach that preserves the probability information in attack detection. We use the ensemble learning algorithm and D-S evidence theory to obtain the attack confidence, and calculate the network security situation value through the situation elements fusion. Experiment results demonstrate that this approach is effective and accurate.
引用
收藏
页码:450 / 463
页数:14
相关论文
共 50 条
  • [41] Network security situation assessment model based on information quality control
    Ren J.
    Ren, Junjun (renjunjun9855@163.com), 1600, Totem Publishers Ltd (16): : 673 - 680
  • [42] Network Security Situation Assessment Method Based on Markov Game Model
    Li, Xi
    Lu, Yu
    Liu, Sen
    Nie, Wei
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2018, 12 (05): : 2414 - 2428
  • [43] A network security situation assessment method based on adversarial deep learning
    Yang, Hongyu
    Zeng, Renyun
    Xu, Guangquan
    Zhang, Liang
    APPLIED SOFT COMPUTING, 2021, 102
  • [44] Network Security Situation Assessment Ecurity Based on the Associated Diffusion Analysis
    Cai, Xiangdong
    Wang, Yuran
    Zhang, Fushuai
    yi, Yangjing
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (01): : 363 - 371
  • [45] Network Security Situation Assessment Based on Improved WOA-SVM
    Zhang, Ran
    Liu, Min
    Pan, Zhihan
    Yin, Yifeng
    IEEE ACCESS, 2022, 10 : 96273 - 96283
  • [46] Network Security Situation Assessment Model Based on GSA-SVM
    Chen, Yu-xin
    Yin, Xiao-chuan
    Sun, Ao
    2018 INTERNATIONAL CONFERENCE ON COMPUTER, COMMUNICATION AND NETWORK TECHNOLOGY (CCNT 2018), 2018, 291 : 414 - 420
  • [47] APT Attack Situation Assessment Model Based on Optimized BP Neural Network
    Fu, Tian
    Lu, YiQin
    Zhen, Wang
    PROCEEDINGS OF 2019 IEEE 3RD INFORMATION TECHNOLOGY, NETWORKING, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (ITNEC 2019), 2019, : 2108 - 2111
  • [48] An efficient method for network security situation assessment
    Tao, Xiaoling
    Kong, Kaichuan
    Zhao, Feng
    Cheng, Siyan
    Wang, Sufang
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2020, 16 (11)
  • [49] Network Security Situation Assessment: A review and discussion
    Leau, Yu-Beng
    Manickam, Selvakumar
    Chong, Yung-Wey
    Lecture Notes in Electrical Engineering, 2015, 339 : 407 - 414
  • [50] Research on Network Security Situation Assessment Method
    Gao, Yuan
    Wen, Jin
    Chen, Pu
    Wang, Zhiqiang
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND NETWORKS, VOL III, CENET 2023, 2024, 1127 : 140 - 152