A Causal Graph-Based Approach for APT Predictive Analytics

被引:3
|
作者
Liu, Haitian [1 ]
Jiang, Rong [1 ]
机构
[1] Natl Univ Def Technol, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
基金
中国国家自然科学基金;
关键词
APT; causal graph; evolving graph; neighborhood graph; deep learning; prediction;
D O I
10.3390/electronics12081849
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, complex multi-stage cyberattacks have become more common, for which audit log data are a good source of information for online monitoring. However, predicting cyber threat events based on audit logs remains an open research problem. This paper explores advanced persistent threat (APT) audit log information and uses a combination of causal graphs and deep learning techniques to perform predictive analysis of APT. The study focuses on two different methods of constructing malicious activity scenarios, including those based on malicious entity evolving graphs and malicious entity neighborhood graphs. Deep learning networks are then utilized to learn from past malicious activity scenarios and predict specific malicious attack events. To validate the effectiveness of this approach, audit log data published by DARPA's Transparent Computing Program and restored by ATLAS are used to demonstrate the confidence of the prediction results and recommend the most effective malicious event prediction by Top-N.
引用
收藏
页数:24
相关论文
共 50 条
  • [21] A Graph-based approach for Kite recognition
    Madi, Kamel
    Seba, Hamida
    Kheddouci, Hamamache
    Barge, Olivier
    PATTERN RECOGNITION LETTERS, 2017, 87 : 186 - 194
  • [22] A GRAPH-BASED APPROACH FOR SEMISUPERVISED CLUSTERING
    Yoshida, Tetsuya
    COMPUTATIONAL INTELLIGENCE, 2014, 30 (02) : 263 - 284
  • [23] A graph-based approach to inequality assessment
    Palestini, Arsen
    Pignataro, Giuseppe
    PHYSICA A-STATISTICAL MECHANICS AND ITS APPLICATIONS, 2016, 455 : 65 - 78
  • [24] Grid Smoothing: A Graph-Based Approach
    Noel, Guillaume
    Djouani, Karim
    Hamam, Yskandar
    PROGRESS IN PATTERN RECOGNITION, IMAGE ANALYSIS, COMPUTER VISION, AND APPLICATIONS, 2010, 6419 : 153 - 160
  • [25] Graph-based Approach to Reliability Assessment
    Sinitca, Aleksandr M.
    Shalugin, Evgeniy D.
    PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 682 - 685
  • [26] A graph-based approach to auditing RxNorm
    Bodenreider, Olivier
    Peters, Lee B.
    JOURNAL OF BIOMEDICAL INFORMATICS, 2009, 42 (03) : 558 - 570
  • [27] A graph-based approach for POCL planning
    Sebastia, L
    Onaindia, E
    Marzal, E
    ECAI 2000: 14TH EUROPEAN CONFERENCE ON ARTIFICIAL INTELLIGENCE, PROCEEDINGS, 2000, 54 : 531 - 535
  • [28] A GRAPH-BASED APPROACH TO CONTEXT MATCHING
    Olaru, Andrei
    Florea, Adina Magda
    SCALABLE COMPUTING-PRACTICE AND EXPERIENCE, 2010, 11 (04): : 393 - 399
  • [29] Graph-Based Counterfactual Causal Inference Modeling for Neuroimaging Analysis
    Dai, Haixing
    Hu, Mengxuan
    Li, Qing
    Zhang, Lu
    Zhao, Lin
    Zhu, Dajiang
    Diez, Ibai
    Sepulcre, Jorge
    Zhang, Fan
    Gao, Xingyu
    Liu, Manhua
    Li, Quanzheng
    Li, Sheng
    Liu, Tianming
    Li, Xiang
    MEDICAL IMAGE COMPUTING AND COMPUTER ASSISTED INTERVENTION - MICCAI 2023 WORKSHOPS, 2023, 14394 : 205 - 213
  • [30] iGraph: A Graph-Based Technique for Visual Analytics of Image and Text Collections
    Gu, Yi
    Wang, Chaoli
    Ma, Jun
    Nemiroff, Robert J.
    Kao, David L.
    VISUALIZATION AND DATA ANALYSIS 2015, 2015, 9397