Research Article

A Hybrid Alarm Association Method Based on AP Clustering and Causality

Algorithm 1

Attack scenario division based on AP clustering.
Input: Alarm dataset .
Output: Attack scenario set .
1 Calculate the similarity matrix →.
2 Calculate the responsibility matrix→.
3 Calculate the availability matrix→.
4 Update matrix and matrix iteratively
5  if Convergence(cluster)
6   output
7  else
8   return 4
9  end if
10 return .