摘要
为了解决海量网络告警信息无法有效整合的问题,提出一种融合多源告警信息的安全态势感知方法,该方法通过深度学习利用告警信息的关联性对多源告警信息进行分析、融合关联,在此基础上,采用最大概率攻击路径的方法更清晰展现网络攻击行为,从而提升网络安全态势感知的精准度。
To solve the problem that massive network alarm information cannot be effectively integrated, this paper proposes a security situation awareness method that integrates multi-source warming information. Through deep learning methods, the relevance of warning information is used to analyze, fuse and associate the multi-source warning information. On this basis, the method of maximum probability attack path is used to show network attack behavior more clearly, so as to improve the accuracy of network security situation awareness.
作者
石镇宇
SHI Zhenyu(China Mobile Tietong Shanxi Branch,Xi'an 710061,China)
出处
《移动通信》
2022年第12期108-113,共6页
Mobile Communications
关键词
深度学习
告警信息
融合关联
网络安全态势感知
deep learning
warning information
fusion and association
network security situation awareness