scholarly journals An Alert Fusion Method Based on Grey Relation and Attribute Similarity Correlation

2016 ◽  
Vol 12 (08) ◽  
pp. 25 ◽  
Author(s):  
Wei Liang ◽  
Zuo Chen ◽  
Ya Wen ◽  
Weidong Xiao

Various security devices which produce a large volume of logs and alerts have been used widely. It is such a troublesome and time-consuming task for network managers to analyze and deal with the information. This paper presented an improved alerts aggregation method based on grey correlation and attribute similarity method. We used grey correlation to ascertain the importance of alert attributes in network security, and considered it as the weight of attributes. Then we combined with the attribute similarity method and calculated the overall feature similarity in order to complete alert aggregation. Experiments results showed that this method had a strict mathematical theory basis and a higher practical value, which can effectively reduce raw alerts and reduce redundancy for alert data fusion.

2016 ◽  
Vol 21 (2) ◽  
pp. 126-132
Author(s):  
Fangfang Guo ◽  
Yibing Hu ◽  
Longting Xiu ◽  
Guangsheng Feng ◽  
Shuaishuai Wang

2020 ◽  
Vol 7 (6) ◽  
pp. 1489-1497
Author(s):  
Tongle Zhou ◽  
Mou Chen ◽  
Jie Zou

2021 ◽  
Author(s):  
L. D. Fiske ◽  
A. K. Katsaggelos ◽  
M. C. G. Aalders ◽  
M. Alfeld ◽  
M. Walton ◽  
...  

2021 ◽  
Vol 1846 (1) ◽  
pp. 012081
Author(s):  
Yang Jun Jia ◽  
Wang Bo Yuan ◽  
Shi Ye ◽  
Li Peng ◽  
Zhang Er Wei

Sign in / Sign up

Export Citation Format

Share Document