• DocumentCode
    3633178
  • Title

    Ontology Oriented Threat Detection System (OOTDS)

  • Author

    Karol Banczyk;Henryk Krawczyk

  • Author_Institution
    Telecommun. & Inf., Gdansk Univ. of Technol., Gdansk, Poland
  • fYear
    2009
  • Firstpage
    144
  • Lastpage
    151
  • Abstract
    The paper discusses the design of a general purpose ontology oriented threat detection system (OOTDS) for environments monitored by sensors. The sensors are assumed to continually provide OOTDS with events reflecting changes in the environment. OOTDS performs event analysis using a network of asynchronous blocks with increasing complexity. Front blocks convert sensor specific events to a unified form. A suggestion block provides hints for threat assessment based on a set of rules. The core threat detection block estimates probabilities of the suggested threats using Multi-Entities Bayesian Networks (MEBN) logic inference based on facts resulting from observed events and knowledge stored in an environment specific threat detection ontology (TDO). Threats with sufficiently high probability levels result in notifications sent to concerned users.The paper defines main OOTDS goals and presents its architecture followed by a short introduction to MEBN logic and an exemplary OOTDS application with a usage scenario.
  • Keywords
    "Ontologies","Logic","Event detection","Bayesian methods","Sensor systems","Plasma materials processing","Informatics","Paper technology","Monitoring","Intrusion detection"
  • Publisher
    ieee
  • Conference_Titel
    Dependability of Computer Systems, 2009. DepCos-RELCOMEX ´09. Fourth International Conference on
  • Print_ISBN
    978-0-7695-3674-3
  • Type

    conf

  • DOI
    10.1109/DepCoS-RELCOMEX.2009.45
  • Filename
    5261021