Implementing Network Attack Detection with a Novel NSSA Model Based on Knowledge Graphs

被引:1
|
作者
Wang, Yixuan [1 ]
Li, Yujun [1 ]
Chen, Xiang [1 ]
Luo, Yeni [1 ]
机构
[1] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu, Sichuan, Peoples R China
关键词
Knowledge graph; Network attack detection; Intrusion detection; Network security situation awareness;
D O I
10.1109/TrustCom50675.2020.00237
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the rapid development of networks, cyberspace security is facing increasingly severe challenges. Traditional alert aggregation process and alert correlation analysis process are susceptible to a large amount of redundancy and false alerts. To tackle the challenge, this paper proposes a network security situational awareness model KG-NSSA (Knowledge-Graph-based NSSA) based on knowledge graphs. This model provides an asset-based network security knowledge graph construction scheme. Based on the network security knowledge graph, a solution is provided for the classic problem in the field of network security situational awareness network attack scenario discovery. The asset-based network security knowledge graph combines the asset information of the monitored network and fully considers the monitoring of network traffic. The attack scenario discovery according to the KG-NSSA model is to complete attack discovery and attack association through attribute graph mining and similarity calculation, which can effectively reflect specific network attack behaviors and mining attack scenarios. The effectiveness of the proposed method is verified on the MIT DARPA2000 data set. Our work provides a new approach for network security situational awareness.
引用
收藏
页码:1727 / 1732
页数:6
相关论文
共 50 条
  • [1] Research on the Construction of Network Security Attack Detection Model Based on Knowledge Graph
    Qin, Lina
    [J]. 2024 IEEE 4th International Conference on Electronic Technology, Communication and Information, ICETCI 2024, 2024, : 596 - 603
  • [2] Motif-Based Attack Detection in Network Communication Graphs
    Juszczyszyn, Krzysztof
    Kolaczek, Grzegorz
    [J]. COMMUNICATIONS AND MULTIMEDIA SECURITY, 2011, 7025 : 206 - 213
  • [3] A Minimum Cost of Network Hardening Model Based on Attack Graphs
    Ma Jun-chun
    Wang Yong-jun
    Sun Ji-yin
    Chen Shan
    [J]. CEIS 2011, 2011, 15
  • [4] A novel method of constituting network security policy based on attack graphs
    Ma, Junchun
    Wang, Yongjun
    Sun, Jiyin
    [J]. Ma, J. (chenshan1223@126.com), 1600, Inst. of Scientific and Technical Information of China (22): : 374 - 381
  • [5] A novel botnet attack detection for IoT networks based on communication graphs
    Munoz, David Concejal
    Valiente, Antonio del-Corte
    [J]. CYBERSECURITY, 2023, 6 (01)
  • [6] A novel botnet attack detection for IoT networks based on communication graphs
    David Concejal Muñoz
    Antonio del-Corte Valiente
    [J]. Cybersecurity, 6
  • [7] RP-NBSR: A Novel Network Attack Detection Model Based on Machine Learning
    Shen, Zihao
    Wang, Hui
    Liu, Kun
    Liu, Peiqian
    Ba, Menglong
    Zhao, MengYao
    [J]. COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2021, 37 (01): : 121 - 133
  • [8] SecKG: Leveraging attack detection and prediction using knowledge graphs
    Kriaa, Siwar
    Chaabane, Yahia
    [J]. 2021 12TH INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION SYSTEMS (ICICS), 2021, : 112 - 119
  • [9] Fast network attack modeling and security evaluation based on attack graphs
    Kotenko, Igor
    Chechulin, Andrey
    [J]. 1600, River Publishers (03): : 27 - 46
  • [10] Research on Defense Model and Detection of Abnormal Characteristics of Network Attack Based on
    Zhao, Xiu Mei
    [J]. FRONTIERS OF MANUFACTURING SCIENCE AND MEASURING TECHNOLOGY V, 2015, : 577 - 581