An Expert System for Mitigation Actions

Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

1 Citation (Scopus)

Abstract

This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.
Original languageEnglish
Title of host publicationProceedings of the 20th Conference of Open Innovations Association, FRUCT 2017
EditorsAlla Levina, Sergey Balandin, Tatiana Tyutina
Pages125-130
Number of pages6
Volume2017-April
ISBN (Electronic)9789526865300
DOIs
Publication statusPublished - 18 Oct 2017
MoE publication typeA4 Article in a conference publication
Event20th Conference on Fruct Association, FRUCT'20 - Saint-Petersburg, Russian Federation
Duration: 3 Apr 20177 Apr 2017

Conference

Conference20th Conference on Fruct Association, FRUCT'20
Abbreviated titleFRUCT'20
CountryRussian Federation
CitySaint-Petersburg
Period3/04/177/04/17

Fingerprint

Expert systems
Critical infrastructures
Ontology

Keywords

  • network security
  • computer security
  • advanced persistent threat
  • mitigation
  • expert system
  • ontologies

Cite this

Karanta, I., & Rautila, M. (2017). An Expert System for Mitigation Actions. In A. Levina, S. Balandin, & T. Tyutina (Eds.), Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017 (Vol. 2017-April, pp. 125-130). [8071302] https://doi.org/10.23919/FRUCT.2017.8071302
Karanta, Ilkka ; Rautila, Mika. / An Expert System for Mitigation Actions. Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017. editor / Alla Levina ; Sergey Balandin ; Tatiana Tyutina. Vol. 2017-April 2017. pp. 125-130
@inproceedings{1143ac6b5d274186a1352723bea0aa3b,
title = "An Expert System for Mitigation Actions",
abstract = "This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.",
keywords = "network security, computer security, advanced persistent threat, mitigation, expert system, ontologies",
author = "Ilkka Karanta and Mika Rautila",
year = "2017",
month = "10",
day = "18",
doi = "10.23919/FRUCT.2017.8071302",
language = "English",
isbn = "978-952-68653-0-0",
volume = "2017-April",
pages = "125--130",
editor = "Alla Levina and Sergey Balandin and Tatiana Tyutina",
booktitle = "Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017",

}

Karanta, I & Rautila, M 2017, An Expert System for Mitigation Actions. in A Levina, S Balandin & T Tyutina (eds), Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017. vol. 2017-April, 8071302, pp. 125-130, 20th Conference on Fruct Association, FRUCT'20, Saint-Petersburg, Russian Federation, 3/04/17. https://doi.org/10.23919/FRUCT.2017.8071302

An Expert System for Mitigation Actions. / Karanta, Ilkka; Rautila, Mika.

Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017. ed. / Alla Levina; Sergey Balandin; Tatiana Tyutina. Vol. 2017-April 2017. p. 125-130 8071302.

Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

TY - GEN

T1 - An Expert System for Mitigation Actions

AU - Karanta, Ilkka

AU - Rautila, Mika

PY - 2017/10/18

Y1 - 2017/10/18

N2 - This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.

AB - This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.

KW - network security

KW - computer security

KW - advanced persistent threat

KW - mitigation

KW - expert system

KW - ontologies

UR - http://www.scopus.com/inward/record.url?scp=85037808391&partnerID=8YFLogxK

U2 - 10.23919/FRUCT.2017.8071302

DO - 10.23919/FRUCT.2017.8071302

M3 - Conference article in proceedings

SN - 978-952-68653-0-0

VL - 2017-April

SP - 125

EP - 130

BT - Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017

A2 - Levina, Alla

A2 - Balandin, Sergey

A2 - Tyutina, Tatiana

ER -

Karanta I, Rautila M. An Expert System for Mitigation Actions. In Levina A, Balandin S, Tyutina T, editors, Proceedings of the 20th Conference of Open Innovations Association, FRUCT 2017. Vol. 2017-April. 2017. p. 125-130. 8071302 https://doi.org/10.23919/FRUCT.2017.8071302