A survey on artificial intelligence techniques for security event correlation: models, challenges, and opportunities

被引:0
|
作者
Diana Levshun
Igor Kotenko
机构
[1] St. Petersburg Federal Research Center of the Russian Academy of Sciences (SPC RAS),
[2] ITMO University,undefined
来源
关键词
Event correlation; Security event; Data mining; Situational awareness; Knowledge representation; Cybersecurity;
D O I
暂无
中图分类号
学科分类号
摘要
Information systems need to process a large amount of event monitoring data. The process of finding the relationships between events is called correlation, which creates a context between independent events and previously collected information in real time and normalizes it for subsequent processing. In cybersecurity, events can determine the steps of attackers and can be analyzed as part of a specific attack strategy. In this survey, we present the systematization of security event correlation models in terms of their representation in AI-based monitoring systems as: rule-based, semantic, graphical and machine learning based-models. We define the main directions of current research in the field of AI-based security event correlation and the methods used for the correlation of both single events and their sequences in attack scenarios. We also describe the prospects for the development of hybrid correlation models. In conclusion, we identify the existing problems in the field and possible ways to overcome them.
引用
收藏
页码:8547 / 8590
页数:43
相关论文
共 50 条
  • [1] A survey on artificial intelligence techniques for security event correlation: models, challenges, and opportunities
    Levshun, Diana
    Kotenko, Igor
    ARTIFICIAL INTELLIGENCE REVIEW, 2023, 56 (08) : 8547 - 8590
  • [2] ARTIFICIAL INTELLIGENCE IN SOCIAL SECURITY: OPPORTUNITIES AND CHALLENGES
    Benouachane, Hassan
    JOURNAL OF SOCIAL POLICY STUDIES, 2022, 20 (03): : 407 - 418
  • [3] A Survey on Explainable Artificial Intelligence Techniques and Challenges
    Hanif, Ambreen
    Zhang, Xuyun
    Wood, Steven
    2021 IEEE 25TH INTERNATIONAL ENTERPRISE DISTRIBUTED OBJECT COMPUTING CONFERENCE WORKSHOPS (EDOCW 2021), 2021, : 81 - 89
  • [4] Artificial intelligence in cyber security: research advances, challenges, and opportunities
    Zhang, Zhimin
    Ning, Huansheng
    Shi, Feifei
    Farha, Fadi
    Xu, Yang
    Xu, Jiabo
    Zhang, Fan
    Choo, Kim-Kwang Raymond
    ARTIFICIAL INTELLIGENCE REVIEW, 2022, 55 (02) : 1029 - 1053
  • [5] Artificial intelligence in cyber security: research advances, challenges, and opportunities
    Zhimin Zhang
    Huansheng Ning
    Feifei Shi
    Fadi Farha
    Yang Xu
    Jiabo Xu
    Fan Zhang
    Kim-Kwang Raymond Choo
    Artificial Intelligence Review, 2022, 55 : 1029 - 1053
  • [6] Artificial intelligence techniques for dynamic security assessments - a survey
    Cuevas, Miguel
    Alvarez-Malebran, Ricardo
    Rahmann, Claudia
    Ortiz, Diego
    Pena, Jose
    Rozas-Valderrama, Rodigo
    ARTIFICIAL INTELLIGENCE REVIEW, 2024, 57 (12)
  • [7] Application of artificial intelligence techniques in information security: A survey
    Aplicación de técnicas de inteligencia artificial en la seguridad informática: Un estudio
    1600, Asociacion Espanola de Inteligencia Artificial (16):
  • [8] Empowering Things With Intelligence: A Survey of the Progress, Challenges, and Opportunities in Artificial Intelligence of Things
    Zhang, Jing
    Tao, Dacheng
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (10) : 7789 - 7817
  • [9] Dimensions of artificial intelligence techniques, blockchain, and cyber security in the Internet of medical things: Opportunities, challenges, and future directions
    Ameen, Aya Hamid
    Mohammed, Mazin Abed
    Rashid, Ahmed Noori
    JOURNAL OF INTELLIGENT SYSTEMS, 2023, 32 (01)
  • [10] Empowering Agrifood System with Artificial Intelligence: A Survey of the Progress, Challenges and Opportunities
    Chen, Tao
    Lv, Liang
    Wang, Di
    Zhang, Jing
    Yang, Yue
    Zhao, Zeyang
    Wang, Chen
    Guo, Xiaowei
    Chen, Hao
    Wang, Qingye
    Xu, Yufei
    Zhang, Qiming
    Du, Bo
    Zhang, Liangpei
    Tao, Dacheng
    ACM COMPUTING SURVEYS, 2025, 57 (02)