APT Attack Detection Based on Graph Convolutional Neural Networks

被引:0
|
作者
Weiwu Ren
Xintong Song
Yu Hong
Ying Lei
Jinyu Yao
Yazhou Du
Wenjuan Li
机构
[1] Changchun University of Science and Technology,School of Computer Science and Technology
[2] National Computer Network Emergency Response Center,Jilin Branch
关键词
APT attack detection; Graph convolutional neural networks; Knowledge graph; Vulnerability exploits;
D O I
暂无
中图分类号
学科分类号
摘要
Advanced persistent threat (APT) attacks are malicious and targeted forms of cyberattacks that pose significant challenges to the information security of governments and enterprises. Traditional detection methods struggle to extract long-term relationships within these attacks effectively. This paper proposes an APT attack detection model based on graph convolutional neural networks (GCNs) to address this issue. The aim is to detect known attacks based on vulnerabilities and attack contexts. We extract organization-vulnerability relationships from publicly available APT threat intelligence, along with the names and relationships of software security entities from CVE, CWE, and CAPEC, to generate triple data and construct a knowledge graph of APT attack behaviors. This knowledge graph is transformed into a homogeneous graph, and GCNs are employed to process graph features, enabling effective APT attack detection. We evaluate the proposed method on the dataset constructed in this paper. The results show that the detection accuracy of the GCN method reaches 95.9%, improving by approximately 2.1% compared to the GraphSage method. This approach proves to be effective in real-world APT attack detection scenarios.
引用
收藏
相关论文
共 50 条
  • [31] Pooling in Graph Convolutional Neural Networks
    Cheung, Mark
    Shi, John
    Jiang, Lavender
    Wright, Oren
    Moura, Jose M. F.
    CONFERENCE RECORD OF THE 2019 FIFTY-THIRD ASILOMAR CONFERENCE ON SIGNALS, SYSTEMS & COMPUTERS, 2019, : 462 - 466
  • [32] Quantum Graph Convolutional Neural Networks
    Zheng, Jin
    Gao, Qing
    Lu, Yanxuan
    2021 PROCEEDINGS OF THE 40TH CHINESE CONTROL CONFERENCE (CCC), 2021, : 6335 - 6340
  • [33] Adaptive Graph Convolutional Neural Networks
    Li, Ruoyu
    Wang, Sheng
    Zhu, Feiyun
    Huang, Junzhou
    THIRTY-SECOND AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTIETH INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE / EIGHTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2018, : 3546 - 3553
  • [34] Kernel Graph Convolutional Neural Networks
    Nikolentzos, Giannis
    Meladianos, Polykarpos
    Tixier, Antoine Jean-Pierre
    Skianis, Konstantinos
    Vazirgiannis, Michalis
    ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING - ICANN 2018, PT I, 2018, 11139 : 22 - 32
  • [35] Hyperbolic Graph Convolutional Neural Networks
    Chami, Ines
    Ying, Rex
    Re, Christopher
    Leskovec, Jure
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 32 (NIPS 2019), 2019, 32
  • [36] Quantization in Graph Convolutional Neural Networks
    Ben Saad, Leila
    Beferull-Lozano, Baltasar
    29TH EUROPEAN SIGNAL PROCESSING CONFERENCE (EUSIPCO 2021), 2021, : 1855 - 1859
  • [37] Graph Anomaly Detection with Graph Convolutional Networks
    Mir, Aabid A.
    Zuhairi, Megat F.
    Musa, Shahrulniza
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (11) : 601 - 613
  • [38] Federated learning for network attack detection using attention-based graph neural networks
    Wu, Jianping
    Qiu, Guangqiu
    Wu, Chunming
    Jiang, Weiwei
    Jin, Jiahe
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [39] A Robust Cyber Attack Detection Method Through Attention-Based Graph Neural Networks
    Xu, Xiangyang
    Song, Yu
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2025,
  • [40] Electricity Theft Detection Using Euclidean and Graph Convolutional Neural Networks
    Liao, Wenlong
    Yang, Zhe
    Liu, Kuangpu
    Zhang, Bin
    Chen, Xinxin
    Song, Runan
    IEEE TRANSACTIONS ON POWER SYSTEMS, 2023, 38 (04) : 3514 - 3527