OntoCSD: an ontology-based security model for an integrated solution of cyberspace defense

Dandan WU, Jie CHEN, Ruiyun XIE, Ke CHEN

PDF(2900 KB)
PDF(2900 KB)
Front. Inform. Technol. Electron. Eng ›› 2024, Vol. 25 ›› Issue (9) : 1209-1225. DOI: 10.1631/FITEE.2300662

OntoCSD: an ontology-based security model for an integrated solution of cyberspace defense

Author information +
History +

Abstract

The construction of an integrated solution for cyberspace defense with dynamic, flexible, and intelligent features is a new idea. To solve the problem whereby traditional static protection methods cannot respond to various network attacks or security demands in an adversarial network environment in time, and to form a complete integrated solution from “threat discovery” to “decision-making generation,” we propose an ontology-based security model, OntoCSD, for an integrated solution of cyberspace defense that uses Web ontology language (OWL) to represent the ontology classes and relationships of threat monitoring, decision-making, response, and defense in cyberspace, and uses semantic Web rule language (SWRL) to design the defensive reasoning rules. OntoCSD can discover potential relationships among network attacks, vulnerabilities, the security state, and defense strategies. Further, an artificial intelligence (AI) expert system based on case-based reasoning (CBR) is used to quickly generate a detailed and comprehensive decision-making scheme. Finally, through Kendall’s coefficient of concordance (W) and four experimental cases in a typical computer network defense (CND) system, which reasons on represented facts and the ontology, OntoCSD’s consistency and its feasibility to solve the issues in the field of cyberspace defense are validated. OntoCSD supports automatic association and reasoning, and provides an integrated solution framework of cyberspace defense.

Keywords

Cyberspace defense / Integrated solution / Ontology / Case-based reasoning (CBR) / Computer network defense (CND)

Cite this article

Download citation ▾
Dandan WU, Jie CHEN, Ruiyun XIE, Ke CHEN. OntoCSD: an ontology-based security model for an integrated solution of cyberspace defense. Front. Inform. Technol. Electron. Eng, 2024, 25(9): 1209‒1225 https://doi.org/10.1631/FITEE.2300662

RIGHTS & PERMISSIONS

2024 Zhejiang University Press
PDF(2900 KB)

Accesses

Citations

Detail

Sections
Recommended

/