An expert system for mitigation actions

This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an...

Full description

Bibliographic Details
Main Authors: Ilkka Karanta, Mika Rautila
Format: Article
Language:English
Published: FRUCT 2017-04-01
Series:Proceedings of the XXth Conference of Open Innovations Association FRUCT
Subjects:
Online Access:https://fruct.org/publications/fruct20/files/Kar.pdf
id doaj-4dfe9fc21a8e4b46a8f62fbc1b5b587b
record_format Article
spelling doaj-4dfe9fc21a8e4b46a8f62fbc1b5b587b2020-11-24T21:28:33ZengFRUCTProceedings of the XXth Conference of Open Innovations Association FRUCT2305-72542343-07372017-04-017762012513010.23919/FRUCT.2017.8071302An expert system for mitigation actionsIlkka Karanta0Mika Rautila1VTT Technical Research Centre of Finland, Espoo, FinlandVTT Technical Research Centre of Finland, Espoo, FinlandThis paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.https://fruct.org/publications/fruct20/files/Kar.pdf advanced persistent threatmitigationexpert systemdecision supportcritical infrastructureontologysecurity management
collection DOAJ
language English
format Article
sources DOAJ
author Ilkka Karanta
Mika Rautila
spellingShingle Ilkka Karanta
Mika Rautila
An expert system for mitigation actions
Proceedings of the XXth Conference of Open Innovations Association FRUCT
advanced persistent threat
mitigation
expert system
decision support
critical infrastructure
ontology
security management
author_facet Ilkka Karanta
Mika Rautila
author_sort Ilkka Karanta
title An expert system for mitigation actions
title_short An expert system for mitigation actions
title_full An expert system for mitigation actions
title_fullStr An expert system for mitigation actions
title_full_unstemmed An expert system for mitigation actions
title_sort expert system for mitigation actions
publisher FRUCT
series Proceedings of the XXth Conference of Open Innovations Association FRUCT
issn 2305-7254
2343-0737
publishDate 2017-04-01
description This paper describes an approach, based on ontologies and expert system technology, for assisting the mitigation of advanced persistent threat (APT) attacks against critical infrastructures. We describe the approach, and a prototype expert system based on it. We delineate a case study, involving an APT against a financial information infrastructure. Finally, we outline some conclusions and recommendations for future work.
topic advanced persistent threat
mitigation
expert system
decision support
critical infrastructure
ontology
security management
url https://fruct.org/publications/fruct20/files/Kar.pdf
work_keys_str_mv AT ilkkakaranta anexpertsystemformitigationactions
AT mikarautila anexpertsystemformitigationactions
AT ilkkakaranta expertsystemformitigationactions
AT mikarautila expertsystemformitigationactions
_version_ 1725969811305922560