首页> 外文会议>International Conference on Cyber Conflict >Mission-focused cyber situational understanding via graph analytics
【24h】

Mission-focused cyber situational understanding via graph analytics

机译:通过图形分析了解以任务为中心的网络情境

获取原文

摘要

This paper describes CyGraph, a prototype tool for improving network security posture, maintaining situational understanding in the face of cyberattacks, and focusing on protection of mission-critical assets. CyGraph captures complex relationships among entities in the cyber security domain, along with how mission elements depend on cyberspace assets. Pattern-matching queries traverse the graph of interrelations according to user-specified constraints, yielding focused clusters of high-risk activity from the swarm of complex interrelationships. Analytic queries are expressed in CyGraph Query Language (CyQL), a domain-specific language for expressing graph patterns of interest, which CyGraph translates to the backend native query language. CyGraph automatically infers the structure of its underlying graph model through analysis of the ingested data, which it presents to the user for generating queries in an intuitive way. CyGraph has been experimentally validated in both enterprise and tactical military environments.
机译:本文介绍了CyGraph,这是一种用于改善网络安全状况,在面对网络攻击时保持对态势的了解并着重于保护关键任务资产的原型工具。 CyGraph捕获了网络安全领域中各个实体之间的复杂关系,以及任务元素如何依赖于网络空间资产。模式匹配查询根据用户指定的约束遍历相互关系图,从而从复杂的相互关系群中产生高风险活动的集中簇。分析查询以CyGraph查询语言(CyQL)表示,CyGraph查询语言(CyQL)是一种特定领域的语言,用于表达感兴趣的图形模式,CyGraph将其翻译为后端本机查询语言。 CyGraph通过分析摄取的数据自动推断其基础图形模型的结构,然后将其呈现给用户以直观方式生成查询。 CyGraph已经在企业和战术军事环境中进行了实验验证。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号