Journal Home Online First Current Issue Archive For Authors Journal Information 中文版

Frontiers of Information Technology & Electronic Engineering >> 2024, Volume 25, Issue 9 doi: 10.1631/FITEE.2300662

OntoCSD: an ontology-based security model for an integrated solution of cyberspace defense

Affiliation(s): School of Computer Science, Chengdu College of University of Electronic Science and Technology of China, Chengdu 610731, China; School of Cybersecurity, Northwestern Polytechnical University, Xi'an 710000, China; China Electronics Technology Cyber Security Co., Ltd., Chengdu 610000, China; less

Received: 2023-09-27 Accepted: 2024-06-29 Available online: 2024-06-29

Next Previous

Abstract

The construction of an for with dynamic, flexible, and intelligent features is a new idea. To solve the problem whereby traditional static protection methods cannot respond to various network attacks or security demands in an adversarial network environment in time, and to form a complete from “threat discovery” to “decision-making generation,” we propose an -based security model, OntoCSD, for an of that uses Web language (OWL) to represent the classes and relationships of threat monitoring, decision-making, response, and defense in cyberspace, and uses semantic Web rule language (SWRL) to design the defensive reasoning rules. OntoCSD can discover potential relationships among network attacks, vulnerabilities, the security state, and defense strategies. Further, an artificial intelligence (AI) expert system based on is used to quickly generate a detailed and comprehensive decision-making scheme. Finally, through Kendall’s coefficient of concordance () and four experimental cases in a typical system, which reasons on represented facts and the , OntoCSD’s consistency and its feasibility to solve the issues in the field of are validated. OntoCSD supports automatic association and reasoning, and provides an framework of .

Related Research