{"title":"基于机器学习的属性访问控制模型中行为的融合","authors":"M. Afshar, Saeed Samet, Hamid Usefi","doi":"10.1109/SysCon48628.2021.9447115","DOIUrl":null,"url":null,"abstract":"Preventing unauthorized and illegitimate access to sensitive resources is the primary duty of access control models. However, the malicious activities by authorized users cause significant damages to their underlying systems. In many cases, existing access control models are incomplete in their ability to detect insider abuse, and rather than detecting and preventing insider attack, it seems to still operate by forensic analysis after an attack. Attribute-Based Access Control is a new access control model that can be used instead of other traditional types of access control models, and makes decisions according to the access requests by utilizing users’ as well as resources’ attributes. However, it still endures a quandary of how to permit the real eligible users to access the resources while blocking abnormal access by authorized users of a system. In this paper, an Attribute/Behavior-Based Access Control is proposed by understanding and deriving users’ behaviors from log files. Not only our model uses the user/resource attributes, but it also utilizes their behaviors to detect the abnormal users even with valid attributes. This model principally uses the behaviors of a given user to grant or deny access requests. The concept of a user’s behavior will be introduced, and we present a feature construction method to model users’ access behaviors. As the proof of concept, machine learning algorithms are trained and tested using a database from UCI Machine Learning Repository. Experimental results illustrate that our model is efficient, accurate, and promising in detecting authorized users with abnormal behaviors.","PeriodicalId":384949,"journal":{"name":"2021 IEEE International Systems Conference (SysCon)","volume":"37 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-04-15","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":"{\"title\":\"Incorporating Behavior in Attribute Based Access Control Model Using Machine Learning\",\"authors\":\"M. Afshar, Saeed Samet, Hamid Usefi\",\"doi\":\"10.1109/SysCon48628.2021.9447115\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Preventing unauthorized and illegitimate access to sensitive resources is the primary duty of access control models. However, the malicious activities by authorized users cause significant damages to their underlying systems. In many cases, existing access control models are incomplete in their ability to detect insider abuse, and rather than detecting and preventing insider attack, it seems to still operate by forensic analysis after an attack. Attribute-Based Access Control is a new access control model that can be used instead of other traditional types of access control models, and makes decisions according to the access requests by utilizing users’ as well as resources’ attributes. However, it still endures a quandary of how to permit the real eligible users to access the resources while blocking abnormal access by authorized users of a system. In this paper, an Attribute/Behavior-Based Access Control is proposed by understanding and deriving users’ behaviors from log files. Not only our model uses the user/resource attributes, but it also utilizes their behaviors to detect the abnormal users even with valid attributes. This model principally uses the behaviors of a given user to grant or deny access requests. The concept of a user’s behavior will be introduced, and we present a feature construction method to model users’ access behaviors. As the proof of concept, machine learning algorithms are trained and tested using a database from UCI Machine Learning Repository. Experimental results illustrate that our model is efficient, accurate, and promising in detecting authorized users with abnormal behaviors.\",\"PeriodicalId\":384949,\"journal\":{\"name\":\"2021 IEEE International Systems Conference (SysCon)\",\"volume\":\"37 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-04-15\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"4\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 IEEE International Systems Conference (SysCon)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/SysCon48628.2021.9447115\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE International Systems Conference (SysCon)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SysCon48628.2021.9447115","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Incorporating Behavior in Attribute Based Access Control Model Using Machine Learning
Preventing unauthorized and illegitimate access to sensitive resources is the primary duty of access control models. However, the malicious activities by authorized users cause significant damages to their underlying systems. In many cases, existing access control models are incomplete in their ability to detect insider abuse, and rather than detecting and preventing insider attack, it seems to still operate by forensic analysis after an attack. Attribute-Based Access Control is a new access control model that can be used instead of other traditional types of access control models, and makes decisions according to the access requests by utilizing users’ as well as resources’ attributes. However, it still endures a quandary of how to permit the real eligible users to access the resources while blocking abnormal access by authorized users of a system. In this paper, an Attribute/Behavior-Based Access Control is proposed by understanding and deriving users’ behaviors from log files. Not only our model uses the user/resource attributes, but it also utilizes their behaviors to detect the abnormal users even with valid attributes. This model principally uses the behaviors of a given user to grant or deny access requests. The concept of a user’s behavior will be introduced, and we present a feature construction method to model users’ access behaviors. As the proof of concept, machine learning algorithms are trained and tested using a database from UCI Machine Learning Repository. Experimental results illustrate that our model is efficient, accurate, and promising in detecting authorized users with abnormal behaviors.