A Causal Graph-Based Approach for APT Predictive Analytics

被引:3
|
作者
Liu, Haitian [1 ]
Jiang, Rong [1 ]
机构
[1] Natl Univ Def Technol, Coll Comp Sci & Technol, Changsha 410073, Peoples R China
基金
中国国家自然科学基金;
关键词
APT; causal graph; evolving graph; neighborhood graph; deep learning; prediction;
D O I
10.3390/electronics12081849
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In recent years, complex multi-stage cyberattacks have become more common, for which audit log data are a good source of information for online monitoring. However, predicting cyber threat events based on audit logs remains an open research problem. This paper explores advanced persistent threat (APT) audit log information and uses a combination of causal graphs and deep learning techniques to perform predictive analysis of APT. The study focuses on two different methods of constructing malicious activity scenarios, including those based on malicious entity evolving graphs and malicious entity neighborhood graphs. Deep learning networks are then utilized to learn from past malicious activity scenarios and predict specific malicious attack events. To validate the effectiveness of this approach, audit log data published by DARPA's Transparent Computing Program and restored by ATLAS are used to demonstrate the confidence of the prediction results and recommend the most effective malicious event prediction by Top-N.
引用
收藏
页数:24
相关论文
共 50 条
  • [41] A graph-based approach to vehicle trajectory analysis
    Guo, Diansheng
    Liu, Shufan
    Jin, Hai
    JOURNAL OF LOCATION BASED SERVICES, 2010, 4 (3-4) : 183 - 199
  • [42] A graph-based approach to web services composition
    Hashemian, SV
    Mavaddat, F
    2005 SYMPOSIUM ON APPLICATIONS AND THE INTERNET, PROCEEDINGS, 2005, : 183 - 189
  • [43] A graph-based approach for multiscale shape analysis
    Torres, RD
    Falcao, AX
    Costa, LD
    PATTERN RECOGNITION, 2004, 37 (06) : 1163 - 1174
  • [44] A Backmapping Approach for Graph-based Object Tracking
    Paixao, Thiago Meireles
    Graciano, Ana Beatriz V.
    Cesar, Roberto M., Jr.
    Hirata, Roberto, Jr.
    SIBGRAPI 2008: XXI BRAZILIAN SYMPOSIUM ON COMPUTER GRAPHICS AND IMAGE PROCESSING, 2008, : 45 - 52
  • [45] Advanced Picture Division: Graph-based Approach
    Manjunatha, A.
    Rajashekarappa
    Parameshachari, B. D.
    Soyjaudah, K. M. Sunjiv
    Banu, Reshma
    Naik, N. Manja
    2017 INTERNATIONAL CONFERENCE ON ELECTRICAL, ELECTRONICS, COMMUNICATION, COMPUTER, AND OPTIMIZATION TECHNIQUES (ICEECCOT), 2017, : 368 - 370
  • [46] A Graph-Based Approach for Shape Skeleton Analysis
    Backes, Andre R.
    Bruno, Odemir M.
    IMAGE ANALYSIS AND PROCESSING - ICIAP 2009, PROCEEDINGS, 2009, 5716 : 731 - +
  • [47] A graph-based approach for designing extensible pipelines
    Maíra R Rodrigues
    Wagner CS Magalhães
    Moara Machado
    Eduardo Tarazona-Santos
    BMC Bioinformatics, 13
  • [48] A Graph-Based Approach for Video Scene Detection
    Sakarya, Ufuk
    Telatar, Zjya
    2008 IEEE 16TH SIGNAL PROCESSING, COMMUNICATION AND APPLICATIONS CONFERENCE, VOLS 1 AND 2, 2008, : 34 - +
  • [49] A Graph-Based Approach for Transcribing Ancient Documents
    Lecireth Meza-Lovon, Graciela
    ADVANCES IN ARTIFICIAL INTELLIGENCE - IBERAMIA 2012, 2012, 7637 : 210 - 220
  • [50] Coastline matching via a graph-based approach
    Costas Panagiotakis
    Smaragda Markaki
    Eleni Kokinou
    Harris Papadakis
    Computational Geosciences, 2022, 26 : 1439 - 1448