Title
Toward Ensemble Characterization and Projection of Multistage Cyber Attacks
Abstract
With expanding network infrastructures, increasing vulnerabilities and uncertain malicious activities, cyber security research has begun to provide situation assessment beyond Intrusion Detection Systems (IDSs). A key goal of cyber situation assessment is to efficiently and effectively project the likely future targets of ongoing multistage attacks. This work presents two ensemble techniques that combine real-time projection algorithms modeling the behavior, capability, and opportunity of malicious activities in a network. Sugeno fuzzy inference system and Transferable Belief Model are used to combine supporting evidence and resolve conflicts between the algorithm outputs. The two ensemble techniques are analyzed and compared using simulated attack datasets generated for varying network environments and attack parameters. The results are discussed to reveal the benefits and limitations of individual algorithms and ensemble techniques.
Year
DOI
Venue
2010
10.1109/ICCCN.2010.5560087
ICCCN
Keywords
Field
DocType
cyber situation assessment,inference mechanisms,intrusion detection systems,computer network security,transferable belief model,multistage cyber attacks,network infrastructures,sugeno fuzzy inference system,security of data,cyber security,real time,intrusion detection system,computational modeling,reliability,situation assessment,servers,markov processes
Computer science,Computer security,Server,Tree (data structure),Network security,Computer network,Hacker,Situation analysis,Theoretical computer science,Directed acyclic graph,Transferable belief model,Intrusion detection system
Conference
ISSN
ISBN
Citations 
1095-2055
978-1-4244-7114-0
11
PageRank 
References 
Authors
0.68
11
4
Name
Order
Citations
PageRank
Haitao Du1556.88
Daniel F. Liu2110.68
Jared Holsopple3524.31
Shanchieh Jay Yang413123.11