Art 22-通过图形分析以任务为中心的网络态势理解

ID:23702

阅读量:0

大小:3.39 MB

页数:22页

时间:2022-11-29

金币:15

上传者:战必胜
427
Mission-Focused Cyber
Situational Understanding
via Graph Analytics
Abstract: This paper describes CyGraph, a prototype tool for improving network
security posture, maintaining situational understanding in the face of cyberattacks,
and focusing on protection of mission-critical assets. CyGraph captures complex
relationships among entities in the cyber security domain, along with how mission
elements depend on cyberspace assets. Pattern-matching queries traverse the graph
of interrelations according to user-specied constraints, yielding focused clusters of
high-risk activity from the swarm of complex interrelationships. Analytic queries
are expressed in CyGraph Query Language (CyQL), a domain-specic language
for expressing graph patterns of interest, which CyGraph translates to the backend
native query language. CyGraph automatically infers the structure of its underlying
graph model through analysis of the ingested data, which it presents to the user for
generating queries in an intuitive way. CyGraph has been experimentally validated in
both enterprise and tactical military environments.
Keywords: common operating picture, situational understanding, mission assurance,
graph analytics
Steven Noel
Cyber Solutions Technical Center
The MITRE Corporation
McLean, Virginia, United States
Stephen Purdy
Software Engineering Technical Center
The MITRE Corporation
McLean, Virginia, United States
Travis Lu
Software Engineering Technical Center
The MITRE Corporation
McLean, Virginia, United States
Paul D. Rowe
Cyber Solutions Technical Center
The MITRE Corporation
McLean, Virginia, United States
Michael Limiero
Cyber Solutions Technical Center
The MITRE Corporation
McLean, Virginia, United States
Will Mathews
Cyber Solutions Technical Center
The MITRE Corporation
McLean, Virginia, United States
2018 10th International Conference on Cyber Conict
CyCon X: Maximising Eects
T. Minárik, R. Jakschis, L. Lindström (Eds.)
2018 © NATO CCD COE Publications, Tallinn
Permission to make digital or hard copies of this publication for internal
use within NATO and for personal or educational use when for non-prot or
non-commercial purposes is granted providing that copies bear this notice
and a full citation on the rst page. Any other reproduction or transmission
requires prior written permission by NATO CCD COE.
资源描述:

当前文档最多预览五页,下载文档查看全文

此文档下载收益归作者所有

当前文档最多预览五页,下载文档查看全文
温馨提示:
1. 部分包含数学公式或PPT动画的文件,查看预览时可能会显示错乱或异常,文件下载后无此问题,请放心下载。
2. 本文档由用户上传,版权归属用户,天天文库负责整理代发布。如果您对本文档版权有争议请及时联系客服。
3. 下载前请仔细阅读文档内容,确认文档内容符合您的需求后进行下载,若出现内容与标题不符可向本站投诉处理。
4. 下载文档时可能由于网络波动等原因无法下载或下载错误,付费完成后未能成功下载的用户请联系客服处理。
关闭