A Novel Approach to Network Security Situation Assessment Based on Attack Confidence

被引:4
作者
Liu, Donghang [1 ,2 ]
Dong, Lihua [1 ]
Lv, Shaoqing [3 ]
Dong, Ying [2 ]
He, Fannv [2 ]
Wu, Chensi [2 ]
Zhang, Yuqing [2 ]
Ma, Hua [4 ]
机构
[1] Xidian Univ, State Key Lab Integrated Serv Network, Xian, Shaanxi, Peoples R China
[2] Univ Chinese Acad Sci, Natl Comp Network Intrus Protect Ctr, Beijing, Peoples R China
[3] Xian Univ Posts & Telecommun, Shaanxi Key Lab Informat Commun Network & Secur, Xian, Shaanxi, Peoples R China
[4] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing, Peoples R China
来源
NETWORK AND SYSTEM SECURITY | 2017年 / 10394卷
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
Network security situation assessment; Attack confidence; Ensemble learning; D-S evidence theory; Information fusion;
D O I
10.1007/978-3-319-64701-2_33
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As an active topic in the research field, network security situation assessment can reflect the security situation from a global perspective. However, existing assessment approaches rely on detection threshold to make decisions, leading to massive false positives and false negatives. This paper proposes a confidence-based network security situation assessment approach that preserves the probability information in attack detection. We use the ensemble learning algorithm and D-S evidence theory to obtain the attack confidence, and calculate the network security situation value through the situation elements fusion. Experiment results demonstrate that this approach is effective and accurate.
引用
收藏
页码:450 / 463
页数:14
相关论文
共 50 条
  • [41] Situation Assessment Based on the State Graph
    Kong, J. T.
    Huang, J.
    Gong, J. X.
    Xiang, F. T.
    Cui, Z. H.
    [J]. INTERNATIONAL CONFERENCE ON ADVANCES IN MANAGEMENT ENGINEERING AND INFORMATION TECHNOLOGY (AMEIT 2015), 2015, : 395 - 403
  • [42] Network security situation awareness method based on multi-source and multi-level information fusion
    Wen, Zhi-Cheng
    Chen, Zhi-Gang
    Deng, Xiao-Heng
    Liu, An-Feng
    [J]. Shanghai Jiaotong Daxue Xuebao/Journal of Shanghai Jiaotong University, 2015, 49 (08): : 1144 - 1152
  • [43] A Network Security Situational Awareness Model Based on Information Fusion
    Abasi
    [J]. ADVANCES IN MECHATRONICS, AUTOMATION AND APPLIED INFORMATION TECHNOLOGIES, PTS 1 AND 2, 2014, 846-847 : 1632 - 1635
  • [44] An amalgamated correlation and regression based feature selection with ensemble learning approach for IoT network attack detection
    Ahmad, Mir Shahnawaz
    Shah, Shahid Mehraj
    [J]. INTERNET TECHNOLOGY LETTERS, 2024, 7 (06)
  • [45] ELM Based Improved Layered Ensemble Architecture for Security Situation Prediction
    Fan, Shuming
    Li, Feng
    Wang, Bin
    Zhang, Xiaoyu
    Yan, Peipei
    [J]. 2022 IEEE 6TH ADVANCED INFORMATION TECHNOLOGY, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (IAEAC), 2022, : 630 - 634
  • [46] A Method of Evaluating Network Attack Probability based on TWDS
    Huang, Zhengxing
    [J]. PROCEEDINGS OF THE 2015 INTERNATIONAL SYMPOSIUM ON COMPUTERS & INFORMATICS, 2015, 13 : 1238 - 1243
  • [47] Situation Assessment based on Dissimilarity Calculation and Evidence Combination
    Wang, Yongwei
    Su, Huifang
    Zhang, Yuchen
    Wang, Yifei
    Zhou, Shengnan
    Liu, Pengcheng
    [J]. 2022 IEEE 6TH ADVANCED INFORMATION TECHNOLOGY, ELECTRONIC AND AUTOMATION CONTROL CONFERENCE (IAEAC), 2022, : 1984 - 1990
  • [48] Network intrusion detection based on feature fusion of attack dimension
    Xiaolong Sun
    Zhengyao Gu
    Hao Zhang
    Jason Gu
    Yanhua Liu
    Chen Dong
    Junwei Ye
    [J]. The Journal of Supercomputing, 81 (6)
  • [49] Enhanced Internet of Things Security Situation Assessment Model with Feature Optimization and Improved SSA-LightGBM
    Xie, Baoshan
    Li, Fei
    Li, Hao
    Wang, Liya
    Yang, Aimin
    [J]. MATHEMATICS, 2023, 11 (16)
  • [50] Enhancing IoT Device Security through Network Attack Data Analysis Using Machine Learning Algorithms
    Koirala, Ashish
    Bista, Rabindra
    Ferreira, Joao C.
    [J]. FUTURE INTERNET, 2023, 15 (06)