摘要
提出一种基于因果关联的攻击场景产生方法.利用因果关联能够发现新的攻击场景的特点,对定义好的超报警类型进行关联,得到所有可能的具有实际意义的攻击场景.实验表明,该方法能够有效解决攻击场景问题.
An attack scenarios creation method based on causality correlation was proposed in this paper. Take advantage of that causality correlation can detect new attack scenario, the method correlate defined Hyper-alert types and get all the attack scenarios that may have actual sense. The result of experiment indicates that this method was effective to create at- tack scenarios.
出处
《微电子学与计算机》
CSCD
北大核心
2009年第9期125-128,共4页
Microelectronics & Computer
关键词
入侵检测
攻击场景
因果关联
intrusion detection
attack scenario
causality correlation