A Novel Approach to Network Security Situation Assessment Based on Attack Confidence

被引:4
|
作者
Liu, Donghang [1 ,2 ]
Dong, Lihua [1 ]
Lv, Shaoqing [3 ]
Dong, Ying [2 ]
He, Fannv [2 ]
Wu, Chensi [2 ]
Zhang, Yuqing [2 ]
Ma, Hua [4 ]
机构
[1] Xidian Univ, State Key Lab Integrated Serv Network, Xian, Shaanxi, Peoples R China
[2] Univ Chinese Acad Sci, Natl Comp Network Intrus Protect Ctr, Beijing, Peoples R China
[3] Xian Univ Posts & Telecommun, Shaanxi Key Lab Informat Commun Network & Secur, Xian, Shaanxi, Peoples R China
[4] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing, Peoples R China
来源
NETWORK AND SYSTEM SECURITY | 2017年 / 10394卷
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
Network security situation assessment; Attack confidence; Ensemble learning; D-S evidence theory; Information fusion;
D O I
10.1007/978-3-319-64701-2_33
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As an active topic in the research field, network security situation assessment can reflect the security situation from a global perspective. However, existing assessment approaches rely on detection threshold to make decisions, leading to massive false positives and false negatives. This paper proposes a confidence-based network security situation assessment approach that preserves the probability information in attack detection. We use the ensemble learning algorithm and D-S evidence theory to obtain the attack confidence, and calculate the network security situation value through the situation elements fusion. Experiment results demonstrate that this approach is effective and accurate.
引用
收藏
页码:450 / 463
页数:14
相关论文
共 50 条
  • [1] Network security situation assessment with network attack behavior classification
    Yang, Hongyu
    Zhang, Zixin
    Xie, Lixia
    Zhang, Liang
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2022, 37 (10) : 6909 - 6927
  • [2] Network Security Situation Assessment Based on HMM
    Zhang, Boyun
    Chen, Zhigang
    Wang, Shulin
    Yan, Xiai
    Zhang, Dingxing
    Fan, Qiang
    ADVANCED INTELLIGENT COMPUTING THEORIES AND APPLICATIONS: WITH ASPECTS OF ARTIFICIAL INTELLIGENCE, 2012, 6839 : 387 - +
  • [3] Network Efficacy Evaluation Based on AHP for Network Security Situation Assessment
    Yuan, Zhichao
    Yao, Shan
    Xia, Chunhe
    Xiang, Shuang
    PROCEEDINGS OF THE 2016 6TH INTERNATIONAL CONFERENCE ON MACHINERY, MATERIALS, ENVIRONMENT, BIOTECHNOLOGY AND COMPUTER (MMEBC), 2016, 88 : 797 - 800
  • [4] A network security situation assessment method based on fusion model
    Yunhao Yu
    Discover Applied Sciences, 6
  • [5] Network Security Situation Assessment Based on Stochastic Game Model
    Zhang, Boyun
    Chen, Zhigang
    Tang, Wensheng
    Fan, Qiang
    Yan, Xiai
    Wang, Shulin
    ADVANCED INTELLIGENT COMPUTING, 2011, 6838 : 517 - +
  • [6] Network Security Situation Assessment Method Based Eigenvector Centrality
    Wu, Zhijun
    Xu, Pei
    Fan, Haoyu
    20TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE, IWCMC 2024, 2024, : 103 - 108
  • [7] A network security situation assessment method based on fusion model
    Yu, Yunhao
    DISCOVER APPLIED SCIENCES, 2024, 6 (03)
  • [8] An Algorithm for Network Security Situation Assessment Based on Deep Learning
    Wen, Zhicheng
    Peng, Linhua
    Wan, Weiqing
    Ou, Jing
    INTERNATIONAL JOURNAL OF PATTERN RECOGNITION AND ARTIFICIAL INTELLIGENCE, 2023, 37 (02)
  • [9] Network security situation assessment based on intuitionistic fuzzy sets
    Han X.-L.
    Liu Y.
    Zhang Z.-J.
    Lyu X.
    Li Y.
    Jilin Daxue Xuebao (Gongxueban)/Journal of Jilin University (Engineering and Technology Edition), 2019, 49 (01): : 261 - 267
  • [10] Network Security Situation Assessment Based on HMM-MPGA
    Li, Xiaoyan
    Zhao, Huan
    PROCEEDINGS OF 2016 2ND INTERNATIONAL CONFERENCE ON INFORMATION MANAGEMENT (ICIM2016), 2016,