Cybersecurity Knowledge Graph Enables Targeted Data Collection for Cybersecurity Analysis.

Changchang Ma,Denghui Zhang,Junjian Zhang,Le Wang,Hao Li,Zhaoquan Gu
DOI: https://doi.org/10.1109/DSC59305.2023.00091
2023-01-01
Abstract:Effective data collecting is crucial for comprehensively understanding and analyzing cyberspace security. As the data related cybersecurity is highly complicated which involves network traffic, system log, security alerts, etc. Traditional methods of data collection, such as total data collection and partial collection, are susceptible to data overload, resulting in a decrease in data analysis efficiency. Furthermore, these methods fail to emphasize the correlation among the collected data. To address these issues, we propose a targeted data collection framework based on cybersecurity knowledge graph in this paper. This framework aims to tailor the collection targets and establish specific collection rules based on different tasks and assets, thereby enhancing the efficiency and accuracy of cybersecurity data analysis. By examining data sources that may be impacted by cybersecurity vulnerabilities, the framework designs specific correlated collection rules for these sources. Comparative experiments with other data collection methods show that the proposed framework can reduce time consumption by 43% and storage space by 54% for the attack detection tasks.
What problem does this paper attempt to address?