Cyber Security Situation Awareness Based on Data Mining
- 10.2991/iccia.2012.62How to use a DOI?
- cyber security, situation awareness, correlation state machine, threat prediction, threat assessment
Situation awareness is a kind of the third generation of information security technology, which aims to provide the global security views of the cyberspace for administrators. A framework of cyber security situation awareness based on data mining is proposed in this paper. The framework can be viewed from two perspectives, one is data flow, which presents the abstracting of cyber data, and the other one is logic view, which presents the procedure of situation awareness. The framework’s core component is correlation state machine, which is an extension of state machine. The correlation state machine is a data structure of achieving situation awareness, which is created based on the technology of data mining. After being created, it can be used to assess and predict the threat situation to achieve cyber knowledge. We conclude with an example of how the framework can be applied to real world to provide cyber security situation for administrators.
- © 2013, the Authors. Published by Atlantis Press.
- Open Access
- This is an open access article distributed under the CC BY-NC license (http://creativecommons.org/licenses/by-nc/4.0/).
Cite this article
TY - CONF AU - Jie Liu AU - Xuewei Feng AU - Jin Li AU - Dongxia Wang PY - 2014/05 DA - 2014/05 TI - Cyber Security Situation Awareness Based on Data Mining BT - Proceedings of the 2012 2nd International Conference on Computer and Information Application (ICCIA 2012) PB - Atlantis Press SP - 254 EP - 258 SN - 1951-6851 UR - https://doi.org/10.2991/iccia.2012.62 DO - 10.2991/iccia.2012.62 ID - Liu2014/05 ER -