network situational awareness and quantitative threat assessment based on multi sensor information fusion

نویسندگان

amin sardeh moghadam

behzad moshiri

ali payandeh

چکیده

threat assessment in the computer networks of organizations can reduce damage caused by attacks and unexpected events. data fusion models such as the jdl model provide efficient and adequate sensors to gather the right information at the right time from the right components. this information then is refined and normalized to provide situational awareness and assess events that may be intended as a threat. this study suggests a new method based on the jdl model where data collected from different sources is normalized into an appropriate format. after normalization, data is converted into the information. threat assessment unit analyzes this information based on various algorithms. we use three algorithms to detect anomaly, one to correlate alerts, and one to determine the successfulness of an attack. the model is then evaluated based on a small simulated network threat to ascertain the efficacy of the proposed method. the results show that the method is an appropriate model for situational awareness and threat assessment.

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A novel ranking method for intuitionistic fuzzy set based on information fusion and application to threat assessment

A novel ranking method based on multi-time information fusion is proposed for intuitionistic fuzzy sets (IFSs) and applied to the threat assessment problem, a multi-attribute decision making (MADM) one. This method integrates a designed intuitionistic fuzzy entropy (IFE), the closeness degree of technique for order preference by similarity to ideal solution (TOPSIS), the decision maker¡¯s (DM¡¯...

متن کامل

(YIP) Information Collection and Fusion for Space Situational Awareness

A significant progress has been made towards characterizing non-Gaussian state density function. Two new methods adaptive Gaussian mixture model (AGMM) and conjugate unscented transformation (CUT) have been developed for this purpose. AGMM method solves the Fokker-Planck-Kolmogorov equation associated with orbital dynamics model. Furthermore, sparse approximation tools have been used to identif...

متن کامل

Sensor network reconfiguration and big multimedia data fusion for situational awareness in smart environments

INTRODUCTION In the last years, an increasing number of environments have been enhanced with smart sensors and have become more and more smart and self-organizing [1]. Situational awareness (SA) in these wide areas covers a huge range of topics and challenges [2]. As matter of fact, understanding activities for situation assessment cannot be achieved locally but it requires to widen as much as ...

متن کامل

Multiple behavior information fusion based quantitative threat evaluation

How to evaluate network security threat quantitatively is one of key issues in the field of network security, which is vital for administrators to make decision on the security of computer networks. A novel model of security threat evaluation with a series of quantitative indices is proposed on the analysis of prevalent network intrusions. This model is based on multiple behavior information fu...

متن کامل

A multi-sensor fusion framework for improving situational awareness in demanding maritime training

Real offshore operational scenarios can involve a considerable amount of risk. Sophisticated training programmes involving specially designed simulator environments constitute a promising approach for improving an individual’s perception and assessment of dangerous situations in real applications. One of the world’s most advanced providers of simulators for such demanding offshore operations is...

متن کامل

Ozone Monitoring Based on Multi-Sensor Information Fusion Techniques

As a strong oxidizer, ozone has much damage to a variety of things. So when using ozone to execute purification, we need to monitor and control its concentration strictly. The monitoring and control of the ozone concentration can greatly reduce the damage caused by ozone concentration. Thus, multi sensor information fusion technique is applied, and then fuses the gathered multi-sensor data info...

متن کامل

منابع من

با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید


عنوان ژورنال:
journal of advances in computer research

ناشر: sari branch, islamic azad university

ISSN 2345-606X

دوره 6

شماره 4 2015

میزبانی شده توسط پلتفرم ابری doprax.com

copyright © 2015-2023