The Parameter Optimization Based on LVPSO Algorithm for Detecting Multi-step Attacks

被引:0
|
作者
Jiang, Jianguo [1 ]
Wang, Qiwen [1 ,2 ]
Shi, Zhixin [1 ]
Lv, Bin [1 ]
Fan, Wei [1 ]
Peng, Xiao [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
基金
中国国家自然科学基金;
关键词
Multi-step attacks; HMM; Particle swarm optimization; MODELS;
D O I
10.1145/3310273.3323048
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
How to detect intrusion attacks is a big challenge for network administrators since the attacks involve multi-step nowadays. The hidden markov model (HMM) is widely used in the field of multi-step attacks detection. However, the existing traditional Baum-Welch algorithm of HMM has two shortcomings: one is the number of attack states need to be determined in advance, the other is the algorithm may make the parameters converge to a local (not overall) optimal solution. In this paper, we propose a novel LVPSO-HMM algorithm based on variable length particle swarm optimization, which solves the shortcomings mentioned above. Concretely, it can optimize the number of attack states when the attacks state is unknown and it can make the model parameters converge to a global optimal solution. Then, we present a multi-step attack detection model architecture whose main idea is, when the number of attack states is unknown in the actual network environment LVPSO-HMM algorithm is used to solve the problem of relying on prior knowledge in current detection. Experiments on the well-known Darpa2000 dataset verify the efficiency of the method.
引用
收藏
页码:24 / 31
页数:8
相关论文
共 50 条
  • [41] GAC: Graph-Based Alert Correlation for the Detection of Distributed Multi-Step Attacks
    Haas, Steffen
    Fischer, Mathias
    33RD ANNUAL ACM SYMPOSIUM ON APPLIED COMPUTING, 2018, : 979 - 988
  • [42] Subspace identification as multi-step predictions optimization
    Trnka, P
    Havlena, V
    PROCEEDINGS OF THE FIFTH IASTED INTERNATIONAL CONFERENCE ON MODELLING, SIMULATION, AND OPTIMIZATION, 2005, : 223 - 228
  • [43] Performance Optimization of a Solar-Driven Multi-Step Irreversible Brayton Cycle Based on a Multi-Objective Genetic Algorithm
    Ahmadi, Mohammad Hosein
    Ahmadi, Mohammad Ali
    Feidt, Michel
    OIL AND GAS SCIENCE AND TECHNOLOGY-REVUE D IFP ENERGIES NOUVELLES, 2016, 71 (01):
  • [44] Step by Step Loss Goes Very Far: Multi-Step Quantization for Adversarial Text Attacks
    Gainski, Piotr
    Balazy, Klaudia
    17TH CONFERENCE OF THE EUROPEAN CHAPTER OF THE ASSOCIATION FOR COMPUTATIONAL LINGUISTICS, EACL 2023, 2023, : 2038 - 2048
  • [45] Multi-level, multi-step motion estimation algorithm
    Shin, DS
    Kwak, NJ
    Kwon, HB
    Ahn, JH
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2001, E84D (06) : 760 - 762
  • [46] Genetic Algorithm based Multi-step Paging in HMIPv6 Networks
    Li, Nan
    Zhu, Yi-hua
    Tang, Yi-ping
    2007 INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-15, 2007, : 1745 - +
  • [47] A Gradient Pursuit Algorithm Based on Multi-Step Quasi-Newton Method
    Hu, Yanjun
    Cheng, Lu
    Jiang, Fang
    Wang, Ren
    2019 IEEE 4TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND BIG DATA ANALYSIS (ICCCBDA), 2019, : 559 - 565
  • [48] Multi-Step Prediction of Excavation Deformation of Subway Station Based on Intelligent Algorithm
    Liu, Juncheng
    Tan, Yong
    Zhang, Shengjie
    Shanghai Jiaotong Daxue Xuebao/Journal of Shanghai Jiaotong University, 2024, 58 (07): : 1108 - 1117
  • [49] Multi-step evolution strategy based DNA generic algorithm for parameters estimating
    Zhang, Duan
    Xia, Yanling
    He, Xiongxiong
    Li, Sheng
    PROCEEDINGS OF THE 2013 FOURTH INTERNATIONAL CONFERENCE ON INTELLIGENT CONTROL AND INFORMATION PROCESSING (ICICIP), 2013, : 828 - 835
  • [50] Multi-step Least Squares Algorithm for Thermal Characterization Based on Mission Profile
    Votava, Martin
    Debbadi, Karthik
    Pascal, Yoann
    Liserre, Marco
    2024 IEEE APPLIED POWER ELECTRONICS CONFERENCE AND EXPOSITION, APEC, 2024, : 1566 - 1573