论文标题

对网络安全方面的知识图应用程序方案的审查

A review of knowledge graph application scenarios in cyber security

论文作者

Liu, Kai, Wang, Fei, Ding, Zhaoyun, Liang, Sheng, Yu, Zhengfei, Zhou, Yun

论文摘要

面对动态复杂的网络环境,内部和外部网络威胁智能以及网络攻击的风险增加,知识图在网络安全区域中具有巨大的应用潜力,因为它们在知识汇总,表示,管理和推理方面具有能力。但是,尽管大多数研究都集中在如何开发完整的知识图上,但尚不清楚如何应用知识图来解决网络攻击和国防场景中的工业真实挑战。在这篇评论中,我们简要概述了网络安全知识图的基本概念,模式和构建方法。为了促进对网络安全知识图的未来研究,我们还提供了有关知识构建和信息提取任务的策划数据集和开源库的集合。在本文的主要部分中,我们对网络安全知识图的应用程序方案中最新进展的不同作品进行了比较回顾。此外,创建了一个新颖的综合分类框架,以描述来自九个主要类别和十八个子类别的连接作品。最后,根据现有研究缺陷的讨论,我们对几个有前途的研究方向有了详尽的看法。

Facing the dynamic complex cyber environments, internal and external cyber threat intelligence, and the increasing risk of cyber-attack, knowledge graphs show great application potential in the cyber security area because of their capabilities in knowledge aggregation, representation, management, and reasoning. However, while most research has focused on how to develop a complete knowledge graph, it remains unclear how to apply the knowledge graph to solve industrial real challenges in cyber-attack and defense scenarios. In this review, we provide a brief overview of the basic concepts, schema, and construction approaches for the cyber security knowledge graph. To facilitate future research on cyber security knowledge graphs, we also present a curated collection of datasets and open-source libraries on the knowledge construction and information extraction task. In the major part of this article, we conduct a comparative review of the different works that elaborate on the recent progress in the application scenarios of the cyber security knowledge graph. Furthermore, a novel comprehensive classification framework is created to describe the connected works from nine primary categories and eighteen subcategories. Finally, we have a thorough outlook on several promising research directions based on the discussion of existing research flaws.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源