Title :
Ontology Oriented Threat Detection System (OOTDS)
Author :
Karol Banczyk;Henryk Krawczyk
Author_Institution :
Telecommun. & Inf., Gdansk Univ. of Technol., Gdansk, Poland
Abstract :
The paper discusses the design of a general purpose ontology oriented threat detection system (OOTDS) for environments monitored by sensors. The sensors are assumed to continually provide OOTDS with events reflecting changes in the environment. OOTDS performs event analysis using a network of asynchronous blocks with increasing complexity. Front blocks convert sensor specific events to a unified form. A suggestion block provides hints for threat assessment based on a set of rules. The core threat detection block estimates probabilities of the suggested threats using Multi-Entities Bayesian Networks (MEBN) logic inference based on facts resulting from observed events and knowledge stored in an environment specific threat detection ontology (TDO). Threats with sufficiently high probability levels result in notifications sent to concerned users.The paper defines main OOTDS goals and presents its architecture followed by a short introduction to MEBN logic and an exemplary OOTDS application with a usage scenario.
Keywords :
"Ontologies","Logic","Event detection","Bayesian methods","Sensor systems","Plasma materials processing","Informatics","Paper technology","Monitoring","Intrusion detection"
Conference_Titel :
Dependability of Computer Systems, 2009. DepCos-RELCOMEX ´09. Fourth International Conference on
Print_ISBN :
978-0-7695-3674-3
DOI :
10.1109/DepCoS-RELCOMEX.2009.45