首页> 外文会议>International Conference on Cyber Conflict >Mission-focused cyber situational understanding via graph analytics
【24h】

Mission-focused cyber situational understanding via graph analytics

机译:通过Graph分析聚焦的网络情境理解

获取原文

摘要

This paper describes CyGraph, a prototype tool for improving network security posture, maintaining situational understanding in the face of cyberattacks, and focusing on protection of mission-critical assets. CyGraph captures complex relationships among entities in the cyber security domain, along with how mission elements depend on cyberspace assets. Pattern-matching queries traverse the graph of interrelations according to user-specified constraints, yielding focused clusters of high-risk activity from the swarm of complex interrelationships. Analytic queries are expressed in CyGraph Query Language (CyQL), a domain-specific language for expressing graph patterns of interest, which CyGraph translates to the backend native query language. CyGraph automatically infers the structure of its underlying graph model through analysis of the ingested data, which it presents to the user for generating queries in an intuitive way. CyGraph has been experimentally validated in both enterprise and tactical military environments.
机译:本文介绍了COMGRAGAGE,一种用于提高网络安全姿势的原型工具,在网络内攻击中保持态势理解,并专注于保护关键任务资产。 COGGRAGG捕获网络安全域中的实体之间的复杂关系,以及任务元素如何依赖于网络空间资产。模式匹配查询根据用户指定的约束遍历相互关系图,从复杂的相互关系中产生聚焦的高风险活动群。分析查询以Cygraph Query语言(CYQL)表示,用于表达感兴趣的图形模式的域特定语言,该曲视转换为后端本机查询语言。 CONGRAGG通过分析摄入的数据自动揭示其底层图形模型的结构,它向用户提供了以直观的方式生成查询。 CONGRAGGE在企业和战术军事环境中进行了实验验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号