Using fuzzy clustering to reconstruct alert correlation graph of intrusion detection
Causal correlation method was one of the most representative methods for instruction detection alert correla-tion. In some conditions, the correlation graph would be split because of loss of causal information. In order to solve the problem, an algorithm was proposed to reconstruct attack scenario u...
Saved in:
Main Authors: | MA Lin-ru1, YANG Lin2, WANG Jian-xin2, TANG Xin2 |
---|---|
Format: | Article |
Language: | zho |
Published: |
Editorial Department of Journal on Communications
2006-01-01
|
Series: | Tongxin xuebao |
Subjects: | |
Online Access: | http://www.joconline.com.cn/zh/article/74662209/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
-
Research on discovering multi-step attack patterns based on clustering IDS alert sequences
by: MEI Hai-bin1, et al.
Published: (2011-01-01) -
Research on attack scenario reconstruction method based on causal knowledge discovery
by: Di FAN, et al.
Published: (2017-04-01) -
Alert processing based on attack graph and multi-source analyzing
by: Wei-xin LIU, et al.
Published: (2015-09-01) -
Survey on application of attack graph technology
by: Zi-wei YE, et al.
Published: (2017-11-01) -
Research on alert correlation method based on alert confidence in multi-IDS environment
by: MEI Hai-bin, et al.
Published: (2011-01-01)