首页 | 本学科首页   官方微博 | 高级检索  
     

基于蚁群算法的电力数据网络APT攻击预警模型
引用本文:梁晶亮,黄军胜,白树军,王鹏,李睿.基于蚁群算法的电力数据网络APT攻击预警模型[J].计算机与现代化,2019,0(1):95-100.
作者姓名:梁晶亮  黄军胜  白树军  王鹏  李睿
作者单位:遵义市供电局信息中心,贵州 遵义,563000;遵义市供电局信息中心,贵州 遵义,563000;遵义市供电局信息中心,贵州 遵义,563000;遵义市供电局信息中心,贵州 遵义,563000;遵义市供电局信息中心,贵州 遵义,563000
基金项目:遵义供电局网络威胁主动发现和预警研究项目(0603002017030102XX00001)
摘    要:高级持续性威胁(Advanced Persistent Threat,APT)是通过预先对攻击对象的业务流程和目标系统进行多维度、多阶段、多对象的持续信息采集,隐匿地实现网络空间的数据窃取。电力网络具有天然的稳定性需求,其覆盖广、涉及面大、灾后损失大。当前APT攻击预警技术存在网络节点碎片化的有限安全域以及全域特征动态检测问题。本文提出基于蚁群算法的电力数据网络APT攻击预警模型。通过设计电力网络的全域可信系统模型,采用流形进行安全边界扩散,将碎片化节点进行柔性关联,确保全域安全控制。构建APT攻击的时效模型,实现攻击对可信系统的损害分析。将APT攻击特征等效为蚁群信息素,实现对APT攻击的自动跟踪和适应。通过实际测试表明,蚁群APT监测预警算法的预警精度有效提升12.6%。

关 键 词:高级持续性威胁  安全威胁  攻击预警  蚁群算法
收稿时间:2019-01-30

APT Attack Prediction Model for Power Data Network Based on Ant Colony Algorithm
LIANG Jing-liang,HUANG Jun-sheng,BAI Shu-jun,WANG Peng,LI Rui.APT Attack Prediction Model for Power Data Network Based on Ant Colony Algorithm[J].Computer and Modernization,2019,0(1):95-100.
Authors:LIANG Jing-liang  HUANG Jun-sheng  BAI Shu-jun  WANG Peng  LI Rui
Affiliation:(Information Center,Zunyi Power Supply Bureau,Zunyi 563000,China)
Abstract: Advanced Persistent Threat (ATP) continuously collects business processes and target systems of attack objects in advance by the way of multi-dimension, multi-stage and multi-object, and anonymously implements data theft of network space. The power network has the natural stability demand, it covers a wide range, involves large scale and has great loss after disaster. There exist the problems of the limited security domain of network node fragmentation and the dynamic detection of the whole domain feature in current APT attack predictions. In this paper, an ATP attack prediction model for power data network based on ant colony algorithm is proposed. By designing the global trusted system model of power network, we use manifold to spread the security boundary and link the fragmented nodes to ensure global security control. The time model of APT attack is built to realize the damage analysis of the attack to the trusted system. Attack prediction model is equivalent to ant colony pheromone, which realizes automatic tracking and adaptation of APT attack. The tests and simulations show that the new model improves prediction accuracy by 12.6%.
Keywords:advanced persistent threat  security threat  attack prediction  ant colony algorithm  
本文献已被 维普 万方数据 等数据库收录!
点击此处可从《计算机与现代化》浏览原始摘要信息
点击此处可从《计算机与现代化》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号