APT Attack Detection Based on Graph Convolutional Neural Networks

被引:0
|
作者
Weiwu Ren
Xintong Song
Yu Hong
Ying Lei
Jinyu Yao
Yazhou Du
Wenjuan Li
机构
[1] Changchun University of Science and Technology,School of Computer Science and Technology
[2] National Computer Network Emergency Response Center,Jilin Branch
来源
International Journal of Computational Intelligence Systems | / 16卷
关键词
APT attack detection; Graph convolutional neural networks; Knowledge graph; Vulnerability exploits;
D O I
暂无
中图分类号
学科分类号
摘要
Advanced persistent threat (APT) attacks are malicious and targeted forms of cyberattacks that pose significant challenges to the information security of governments and enterprises. Traditional detection methods struggle to extract long-term relationships within these attacks effectively. This paper proposes an APT attack detection model based on graph convolutional neural networks (GCNs) to address this issue. The aim is to detect known attacks based on vulnerabilities and attack contexts. We extract organization-vulnerability relationships from publicly available APT threat intelligence, along with the names and relationships of software security entities from CVE, CWE, and CAPEC, to generate triple data and construct a knowledge graph of APT attack behaviors. This knowledge graph is transformed into a homogeneous graph, and GCNs are employed to process graph features, enabling effective APT attack detection. We evaluate the proposed method on the dataset constructed in this paper. The results show that the detection accuracy of the GCN method reaches 95.9%, improving by approximately 2.1% compared to the GraphSage method. This approach proves to be effective in real-world APT attack detection scenarios.
引用
收藏
相关论文
共 50 条
  • [31] Construction of an Event Knowledge Graph Based on a Dynamic Resource Scheduling Optimization Algorithm and Semantic Graph Convolutional Neural Networks
    Liu, Xing
    Zhang, Long
    Zheng, Qiusheng
    Wei, Fupeng
    Wang, Kezheng
    Zhang, Zheng
    Chen, Ziwei
    Niu, Liyue
    Liu, Jizong
    ELECTRONICS, 2024, 13 (01)
  • [32] Optimization of APT attack detection based on a model combining ATTENTION and deep learning
    Cho Do Xuan
    Duc Duong
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2022, 42 (04) : 4135 - 4151
  • [33] One-Stage Object Detection with Graph Convolutional Networks
    Du, Lijun
    Sun, Xin
    Dong, Junyu
    TWELFTH INTERNATIONAL CONFERENCE ON GRAPHICS AND IMAGE PROCESSING (ICGIP 2020), 2021, 11720
  • [34] A novel approach for APT attack detection based on combined deep learning model
    Cho Do Xuan
    Mai Hoang Dao
    Neural Computing and Applications, 2021, 33 : 13251 - 13264
  • [35] A novel approach for APT attack detection based on combined deep learning model
    Cho Do Xuan
    Mai Hoang Dao
    NEURAL COMPUTING & APPLICATIONS, 2021, 33 (20) : 13251 - 13264
  • [36] Learning Graph Convolutional Neural Networks to Predict Radio Environment Maps
    Tonchev, Krasimir
    Ivanov, Antoni
    Neshov, Nikolay
    Manolova, Agata
    Poulkov, Vladimir
    2022 25TH INTERNATIONAL SYMPOSIUM ON WIRELESS PERSONAL MULTIMEDIA COMMUNICATIONS (WPMC), 2022,
  • [37] A Multi-stage APT Attack Detection Method Based on Sample Enhancement
    Xie, Lixia
    Li, Xueou
    Yang, Hongyu
    Zhang, Liang
    CYBERSPACE SAFETY AND SECURITY, CSS 2022, 2022, 13547 : 209 - 216
  • [38] Graph Convolutional Neural Networks for Nuclei Segmentation from Histopathology Images
    Damania, Karishma
    Jothi, J. Angel Arul
    SOFT COMPUTING AND ITS ENGINEERING APPLICATIONS, ICSOFTCOMP 2022, 2023, 1788 : 158 - 169
  • [39] Graph-Time Convolutional Neural Networks: Architecture and Theoretical Analysis
    Sabbaqi, Mohammad
    Isufi, Elvin
    IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 2023, 45 (12) : 14625 - 14638
  • [40] Enhanced Simulation of Complicated MXene Materials with Graph Convolutional Neural Networks
    Chen, Xin
    Wan, Zicheng
    Lao, Sisi
    Tian, Ziqi
    CHEMPHYSCHEM, 2025, 26 (06)