Skip to main content
Top

2017 | OriginalPaper | Chapter

Multi-Criteria Recommender Approach for Supporting Intrusion Response System

Authors : Tarek Bouyahia, Nora Cuppens-Boulahia, Frédéric Cuppens, Fabien Autrel

Published in: Foundations and Practice of Security

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Recommender systems are tools for processing and organizing information in order to give assistance to the system users. This assistance is provided by analyzing their own preferences or the preferences of their community. This paper introduces an approach based on content-based recommendation for efficient security administrators assistance in the context of reaction against intrusion detection. The proposed methodology considers the set of active contexts while analyzing the security administrator decisions historic. It provides better recommendation depending on the contexts in which the system is operating. For instance, in an automotive system, given an attack scenario, the fact that a vehicle is operating on downtown or on a highway influences countermeasures selection.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference Toth, T., Krügel, C.: Evaluating the impact of automated intrusion response mechanisms. In: 18th Annual Computer Security Applications Conference, 9–13 December 2002, Las Vegas, NV, USA, pp. 301–310. IEEE Computer Society (2002) Toth, T., Krügel, C.: Evaluating the impact of automated intrusion response mechanisms. In: 18th Annual Computer Security Applications Conference, 9–13 December 2002, Las Vegas, NV, USA, pp. 301–310. IEEE Computer Society (2002)
2.
go back to reference Balepin, I., Maltsev, S., Rowe, J., Levitt, K.: Using specification-based intrusion detection for automated response. In: Vigna, G., Kruegel, C., Jonsson, E. (eds.) RAID 2003. LNCS, vol. 2820, pp. 136–154. Springer, Heidelberg (2003). doi:10.1007/978-3-540-45248-5_8 CrossRef Balepin, I., Maltsev, S., Rowe, J., Levitt, K.: Using specification-based intrusion detection for automated response. In: Vigna, G., Kruegel, C., Jonsson, E. (eds.) RAID 2003. LNCS, vol. 2820, pp. 136–154. Springer, Heidelberg (2003). doi:10.​1007/​978-3-540-45248-5_​8 CrossRef
3.
go back to reference Foo, B., Wu, Y., Mao, Y., Bagchi, S., Spafford, E.H.: ADEPTS: adaptive intrusion response using attack graphs in an e-commerce environment. In: 2005 Proceedings of the International Conference on Dependable Systems and Networks (DSN 2005), 28 June - 1 July 2005, Yokohama, Japan, pp. 508–517, IEEE Computer Society (2005) Foo, B., Wu, Y., Mao, Y., Bagchi, S., Spafford, E.H.: ADEPTS: adaptive intrusion response using attack graphs in an e-commerce environment. In: 2005 Proceedings of the International Conference on Dependable Systems and Networks (DSN 2005), 28 June - 1 July 2005, Yokohama, Japan, pp. 508–517, IEEE Computer Society (2005)
4.
go back to reference Pazzani, M.J., Billsus, D.: Learning and revising user profiles: the identification of interesting web sites. Mach. Learn. 27(3), 313–331 (1997)CrossRef Pazzani, M.J., Billsus, D.: Learning and revising user profiles: the identification of interesting web sites. Mach. Learn. 27(3), 313–331 (1997)CrossRef
5.
go back to reference Resnick, P., Iacovou, N., Suchak, M., Bergstrom, P., Riedl, J.: GroupLens: an open architecture for collaborative filtering of netNews. In: Proceedings of the Conference on Computer Supported Cooperative Work, CSCW 1994, pp. 175–186. ACM (1994) Resnick, P., Iacovou, N., Suchak, M., Bergstrom, P., Riedl, J.: GroupLens: an open architecture for collaborative filtering of netNews. In: Proceedings of the Conference on Computer Supported Cooperative Work, CSCW 1994, pp. 175–186. ACM (1994)
6.
go back to reference Balabanovic, M., Shoham, Y.: Content-based, collaborative recommendation. Commun. ACM 40(3), 66–72 (1997)CrossRef Balabanovic, M., Shoham, Y.: Content-based, collaborative recommendation. Commun. ACM 40(3), 66–72 (1997)CrossRef
7.
go back to reference Manouselis, N., Costopoulou, C.: Analysis and classification of multi-criteria recommender systems. World Wide Web 10(4), 415–441 (2007)CrossRef Manouselis, N., Costopoulou, C.: Analysis and classification of multi-criteria recommender systems. World Wide Web 10(4), 415–441 (2007)CrossRef
8.
go back to reference Adomavicius, G., Manouselis, N., Kwon, Y.: Multi-criteria recommender systems. In: Ricci, F., Rokach, L., Shapira, B., Kantor, P.B. (eds.) Recommender Systems Handbook, pp. 769–803. Springer, New York (2011)CrossRef Adomavicius, G., Manouselis, N., Kwon, Y.: Multi-criteria recommender systems. In: Ricci, F., Rokach, L., Shapira, B., Kantor, P.B. (eds.) Recommender Systems Handbook, pp. 769–803. Springer, New York (2011)CrossRef
9.
go back to reference Montibeller, G., Franco, A.: Multi-criteria decision analysis for strategic decision making. In: Zopounidis, C., Pardalos, P.M. (eds.) Handbook of Multicriteria Analysis, vol. 103, pp. 25–48. Springer, Heidelberg (2010)CrossRef Montibeller, G., Franco, A.: Multi-criteria decision analysis for strategic decision making. In: Zopounidis, C., Pardalos, P.M. (eds.) Handbook of Multicriteria Analysis, vol. 103, pp. 25–48. Springer, Heidelberg (2010)CrossRef
10.
go back to reference Zeleny, M.: Multiple Criteria Decision Making. McGraw-Hill, New York (1982)MATH Zeleny, M.: Multiple Criteria Decision Making. McGraw-Hill, New York (1982)MATH
11.
go back to reference Chiprianov, V., Meyer, P., Simonin, J.: Towards a model-based multiple criteria decision aid process (2013) Chiprianov, V., Meyer, P., Simonin, J.: Towards a model-based multiple criteria decision aid process (2013)
12.
go back to reference Oglaza, A., Laborde, R., Zaraté, P.: Kapuer: un assistant à l’écriture de politiques d’autorisation pour la protection de la vie privée. Ingénierie des Systèmes d’Information 19(6), 91–115 (2014) Oglaza, A., Laborde, R., Zaraté, P.: Kapuer: un assistant à l’écriture de politiques d’autorisation pour la protection de la vie privée. Ingénierie des Systèmes d’Information 19(6), 91–115 (2014)
13.
go back to reference Dung, P.M.: On the acceptability of arguments and its fundamental role in nonmonotonic reasoning, logic programming and n-person games. Artif. Intell. 77(2), 321–357 (1995)MathSciNetCrossRefMATH Dung, P.M.: On the acceptability of arguments and its fundamental role in nonmonotonic reasoning, logic programming and n-person games. Artif. Intell. 77(2), 321–357 (1995)MathSciNetCrossRefMATH
14.
go back to reference Bench-Capon, T.J.M.: Persuasion in practical argument using value-based argumentation frameworks. J. Log. Comput. 13(3), 429–448 (2003)MathSciNetCrossRefMATH Bench-Capon, T.J.M.: Persuasion in practical argument using value-based argumentation frameworks. J. Log. Comput. 13(3), 429–448 (2003)MathSciNetCrossRefMATH
15.
go back to reference Bouyahia, T., Autrel, F., Cuppens-Boulahia, N., Cuppens, F.: Context aware intrusion response based on argumentation logic. In: Lambrinoudakis, C., Gabillon, A. (eds.) CRiSIS 2015. LNCS, vol. 9572, pp. 91–106. Springer, Heidelberg (2016). doi:10.1007/978-3-319-31811-0_6 CrossRef Bouyahia, T., Autrel, F., Cuppens-Boulahia, N., Cuppens, F.: Context aware intrusion response based on argumentation logic. In: Lambrinoudakis, C., Gabillon, A. (eds.) CRiSIS 2015. LNCS, vol. 9572, pp. 91–106. Springer, Heidelberg (2016). doi:10.​1007/​978-3-319-31811-0_​6 CrossRef
16.
go back to reference Cuppens, F., Ortalo, R.: LAMBDA: a language to model a database for detection of attacks. In: Debar, H., Mé, L., Wu, S.F. (eds.) RAID 2000. LNCS, vol. 1907, pp. 197–216. Springer, Heidelberg (2000). doi:10.1007/3-540-39945-3_13 CrossRef Cuppens, F., Ortalo, R.: LAMBDA: a language to model a database for detection of attacks. In: Debar, H., Mé, L., Wu, S.F. (eds.) RAID 2000. LNCS, vol. 1907, pp. 197–216. Springer, Heidelberg (2000). doi:10.​1007/​3-540-39945-3_​13 CrossRef
17.
go back to reference Afshari, A., Mojahed, M., Yusuff, R.M.: Simple additive weighting approach to personnel selection problem. Int. J. Innov. Manag. Technol. 1(5), 511 (2010) Afshari, A., Mojahed, M., Yusuff, R.M.: Simple additive weighting approach to personnel selection problem. Int. J. Innov. Manag. Technol. 1(5), 511 (2010)
18.
go back to reference Hwang, C., Lai, Y., Liu, T.: A new approach for multiple objective decision making. Comput. OR 20(8), 889–899 (1993)CrossRefMATH Hwang, C., Lai, Y., Liu, T.: A new approach for multiple objective decision making. Comput. OR 20(8), 889–899 (1993)CrossRefMATH
19.
go back to reference Bouyssou, D., Roy, B.: Aide multicritere a la decision: Methodes et cas. Economica, Paris (1993) Bouyssou, D., Roy, B.: Aide multicritere a la decision: Methodes et cas. Economica, Paris (1993)
20.
go back to reference Saaty, T.: The Analytic Hierarchy Process. McGraw-Hill, New York (1980)MATH Saaty, T.: The Analytic Hierarchy Process. McGraw-Hill, New York (1980)MATH
21.
go back to reference Koscher, K., Czeskis, A., Roesner, F., Patel, S., Kohno, T., Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S.: Experimental security analysis of a modern automobile. In: 31st IEEE Symposium on Security and Privacy, S&P 2010, pp. 447–462. IEEE Computer Society (2010) Koscher, K., Czeskis, A., Roesner, F., Patel, S., Kohno, T., Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S.: Experimental security analysis of a modern automobile. In: 31st IEEE Symposium on Security and Privacy, S&P 2010, pp. 447–462. IEEE Computer Society (2010)
22.
go back to reference Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S., Koscher, K., Czeskis, A., Roesner, F., Kohno, T.: Comprehensive experimental analyses of automotive attack surfaces. In: USENIX Association (2011) Checkoway, S., McCoy, D., Kantor, B., Anderson, D., Shacham, H., Savage, S., Koscher, K., Czeskis, A., Roesner, F., Kohno, T.: Comprehensive experimental analyses of automotive attack surfaces. In: USENIX Association (2011)
Metadata
Title
Multi-Criteria Recommender Approach for Supporting Intrusion Response System
Authors
Tarek Bouyahia
Nora Cuppens-Boulahia
Frédéric Cuppens
Fabien Autrel
Copyright Year
2017
DOI
https://doi.org/10.1007/978-3-319-51966-1_4

Premium Partner