Network intrusion forensics is an important extension to present security infrastructure,and is becoming the focus of forensics research field.However,comparison with sophisticated multi-stage attacks and volume of se...Network intrusion forensics is an important extension to present security infrastructure,and is becoming the focus of forensics research field.However,comparison with sophisticated multi-stage attacks and volume of sensor data,current practices in network forensic analysis are to manually examine,an error prone,labor-intensive and time consuming process.To solve these problems,in this paper we propose a digital evidence fusion method for network forensics with Dempster-Shafer theory that can detect efficiently computer crime in networked environments,and fuse digital evidence from different sources such as hosts and sub-networks automatically.In the end,we evaluate the method on well-known KDD Cup1999 dataset.The results prove our method is very effective for real-time network forensics,and can provide comprehensible messages for a forensic investigators.展开更多
The work condition of nuclear power plant (NPP) is very bad, which makes ithas faults easily. In order to diagnose (he faults real time, the fusion diagnosis system is built.The data fusion fault diagnosis system adop...The work condition of nuclear power plant (NPP) is very bad, which makes ithas faults easily. In order to diagnose (he faults real time, the fusion diagnosis system is built.The data fusion fault diagnosis system adopts data fusion method and divides the fault diagnosisinto three levels, which are data fusion level, feature level and decision level. The feature leveluses three parallel neural networks whose structures are the same. The purpose of using neuralnetworks is mainly to get basic probability assignment ( BPA) of D-S evidence theory, and the neuralnetworks in feature level are used for local diagnosis. D-S evidence theory is adopted to integratethe local diagnosis results in decision level. The reactor coolant system is the study object andwe choose 2# steam generator U-tubes break of the reactor coolant system as a diagnostic example.The experiments prove that the fusion diagnosis system can satisfy the fault diagnosis requirementof complicated system, and verify that the fusion fault diagnosis system can realize the faultdiagnosis of NPP on line timely.展开更多
基金supported by the National Natural Science Foundation of China under Grant No.60903166 the National High Technology Research and Development Program of China(863 Program) under Grants No.2012AA012506,No.2012AA012901,No.2012AA012903+9 种基金 Specialized Research Fund for the Doctoral Program of Higher Education of China under Grant No.20121103120032 the Humanity and Social Science Youth Foundation of Ministry of Education of China under Grant No.13YJCZH065 the Opening Project of Key Lab of Information Network Security of Ministry of Public Security(The Third Research Institute of Ministry of Public Security) under Grant No.C13613 the China Postdoctoral Science Foundation General Program of Science and Technology Development Project of Beijing Municipal Education Commission of China under Grant No.km201410005012 the Research on Education and Teaching of Beijing University of Technology under Grant No.ER2013C24 the Beijing Municipal Natural Science Foundation Sponsored by Hunan Postdoctoral Scientific Program Open Research Fund of Beijing Key Laboratory of Trusted Computing Funds for the Central Universities, Contract No.2012JBM030
文摘Network intrusion forensics is an important extension to present security infrastructure,and is becoming the focus of forensics research field.However,comparison with sophisticated multi-stage attacks and volume of sensor data,current practices in network forensic analysis are to manually examine,an error prone,labor-intensive and time consuming process.To solve these problems,in this paper we propose a digital evidence fusion method for network forensics with Dempster-Shafer theory that can detect efficiently computer crime in networked environments,and fuse digital evidence from different sources such as hosts and sub-networks automatically.In the end,we evaluate the method on well-known KDD Cup1999 dataset.The results prove our method is very effective for real-time network forensics,and can provide comprehensible messages for a forensic investigators.
文摘The work condition of nuclear power plant (NPP) is very bad, which makes ithas faults easily. In order to diagnose (he faults real time, the fusion diagnosis system is built.The data fusion fault diagnosis system adopts data fusion method and divides the fault diagnosisinto three levels, which are data fusion level, feature level and decision level. The feature leveluses three parallel neural networks whose structures are the same. The purpose of using neuralnetworks is mainly to get basic probability assignment ( BPA) of D-S evidence theory, and the neuralnetworks in feature level are used for local diagnosis. D-S evidence theory is adopted to integratethe local diagnosis results in decision level. The reactor coolant system is the study object andwe choose 2# steam generator U-tubes break of the reactor coolant system as a diagnostic example.The experiments prove that the fusion diagnosis system can satisfy the fault diagnosis requirementof complicated system, and verify that the fusion fault diagnosis system can realize the faultdiagnosis of NPP on line timely.