首页|基于凝聚层次聚类算法的ATT&CK模型改进

基于凝聚层次聚类算法的ATT&CK模型改进

扫码查看
在应用ATT&CK模型(网络攻击模型)进行网络安全威胁分析的过程中,ATT&CK模型提供的技术集合过于复杂。针对ATT&CK模型应用复杂的问题,论文对模型的技术集进行聚类简化研究,提出了基于聚类算法的模型改进方法,首先对ATT&CK模型的技术集合进行量化和聚类趋势评估,然后对量化的数据应用凝聚层次聚类算法得到简化的聚类结果,最后通过实验验证模型改进有效性。
Improvement of ATT&CK Model Based on Agglomerative Hierarchical Clustering Algorithm
In the process of applying the ATT&CK model(network attack model)to network security threat analysis,the tech-nology set provided by the ATT&CK model is too complicated.In view of the complexity of the ATT&CK model's application,this paper conducts a clustering study on the model's technology set for simplification,and proposes a model improvement method based on the clustering algorithm.First,the ATT&CK model's technology set is quantified and the clustering trend assessment is per-formed,and then agglomerated hierarchical clustering algorithm is applied to the data to obtain simplified clustering results,and fi-nally the effectiveness of the model improvement is verified through experiments.

network attack modelATT&CKclustering algorithmagglomerated hierarchical clustering

徐明迪、崔峰

展开 >

武汉数字工程研究所 武汉 430205

网络攻击模型 ATT&CK 聚类算法 凝聚层次聚类

2024

计算机与数字工程
中国船舶重工集团公司第七0九研究所

计算机与数字工程

CSTPCD
影响因子:0.355
ISSN:1672-9722
年,卷(期):2024.52(1)
  • 16