Research of MDCOP Mining Based on Time Aggregated Graph for Large Spatio-temproal Data Sets
Computer Science and Information Systems, Tome 16 (2019) no. 3.

Voir la notice de l'article provenant de la source Computer Science and Information Systems website

Discovering mixed-drove spatiotemporal co-occurrence patterns (MD-COPs) is important for network security such as distributed denial of service (DDoS) attack. There are usually many features when we are suffering from a DDoS attacks such as the server CPU is heavily occupied for a long time, bandwidth is hoovered and so on. In distributed cooperative intrusion, the feature information from multi-ple intrusion detection sources should be analyzed simultaneously to find the spatial correlation among the feature information.In addition to spatial correlation, intrusion also has temporal correlation. Some invasions are gradually penetrating, and attacks are the result of cumulative effects over a period of time. So it is necessary to discover mixed-drove spatiotemporal co-occurrence patterns (MDCOPs) in network security. However, it is difficult to mine MDCOPs from large attack event data sets because mining MDCOPs is computationally very expensive. In informa-tion security, the set of candidate co-occurrence attack event data sets is exponential in the number of object-types and the spatiotemporal data sets are too large to be managed in memory. To reduce the number of candidate co-occurrence instances, we present a computationally efficient MDCOP Graph Miner algorithm by using Time Aggregated Graph. which can deal with large attack event data sets by means of file index. The correctness, completeness and efficiency of the proposed methods are analyzed.
Keywords: Network spatiotemporal co-occurrence pattern intrusion detection, mixed-drove spatiotemporal co-occurrence pattern, large spatiotemporal data set, TimeAggregated Graph (TAG), file index
@article{CSIS_2019_16_3_a11,
     author = {Zhanquan Wang and Taoli Han and Huiqun Yu},
     title = {Research of {MDCOP} {Mining} {Based} on {Time} {Aggregated} {Graph} for {Large} {Spatio-temproal} {Data} {Sets}},
     journal = {Computer Science and Information Systems},
     publisher = {mathdoc},
     volume = {16},
     number = {3},
     year = {2019},
     url = {http://geodesic.mathdoc.fr/item/CSIS_2019_16_3_a11/}
}
TY  - JOUR
AU  - Zhanquan Wang
AU  - Taoli Han
AU  - Huiqun Yu
TI  - Research of MDCOP Mining Based on Time Aggregated Graph for Large Spatio-temproal Data Sets
JO  - Computer Science and Information Systems
PY  - 2019
VL  - 16
IS  - 3
PB  - mathdoc
UR  - http://geodesic.mathdoc.fr/item/CSIS_2019_16_3_a11/
ID  - CSIS_2019_16_3_a11
ER  - 
%0 Journal Article
%A Zhanquan Wang
%A Taoli Han
%A Huiqun Yu
%T Research of MDCOP Mining Based on Time Aggregated Graph for Large Spatio-temproal Data Sets
%J Computer Science and Information Systems
%D 2019
%V 16
%N 3
%I mathdoc
%U http://geodesic.mathdoc.fr/item/CSIS_2019_16_3_a11/
%F CSIS_2019_16_3_a11
Zhanquan Wang; Taoli Han; Huiqun Yu. Research of MDCOP Mining Based on Time Aggregated Graph for Large Spatio-temproal Data Sets. Computer Science and Information Systems, Tome 16 (2019) no. 3. http://geodesic.mathdoc.fr/item/CSIS_2019_16_3_a11/