Using fuzzy clustering to reconstruct alert correlation graph of intrusion detection

Causal correlation method was one of the most representative methods for instruction detection alert correla-tion. In some conditions, the correlation graph would be split because of loss of causal information. In order to solve the problem, an algorithm was proposed to reconstruct attack scenario u...

Full description

Saved in:
Bibliographic Details
Main Authors: MA Lin-ru1, YANG Lin2, WANG Jian-xin2, TANG Xin2
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2006-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74662209/
Tags: Add Tag
No Tags, Be the first to tag this record!

Similar Items