Research Article
A Hybrid Alarm Association Method Based on AP Clustering and Causality
Algorithm 1
Attack scenario division based on AP clustering.
| Input: Alarm dataset . | | Output: Attack scenario set . | | 1 Calculate the similarity matrix →. | | 2 Calculate the responsibility matrix→. | | 3 Calculate the availability matrix→. | | 4 Update matrix and matrix iteratively | | 5 if Convergence(cluster) | | 6 output | | 7 else | | 8 return 4 | | 9 end if | | 10 return . |
|