• Title/Summary/Keyword: Alert correlation analysis

Search Result 19, Processing Time 0.027 seconds

Correlation among the Medication Error Risk of High-alert Medication, Attitudes to Single Checking Medication, and Medication Safety Activities of Nurses in the Intensive Care Unit (중환자실 간호사의 고위험약물에 대한 투약오류 위험과 약물단독확인 태도, 투약안전간호활동 간의 상관성)

  • Kim, Myoung Soo;Jung, Hyun Kyeong
    • Journal of Korean Critical Care Nursing
    • /
    • v.8 no.1
    • /
    • pp.1-10
    • /
    • 2015
  • This study was conducted to examine the relationship among the error risk of high-alert medication, attitudes to single-person checking of medication, and medication safety activities. The participants were 60 nurses working in the intensive care unit. Data were analyzed using descriptive analysis, t-test, analysis of variance, and Pearson's correlation coefficient. The mean scores of the knowledge and certainty of high-alert medication were $0.71{\pm}0.11$ and $2.74{\pm}0.59$, respectively. The mean score of the error risk of high-alert medication was $1.63{\pm}0.24$ and that of attitudes to single checking medication was $3.32{\pm}0.49$. The error risk of high-alert medication had a positive correlation with nurses' attitudes to single checking medication (r = .258, p = .047), which is correlated with the scores for certainty of knowledge (r = .284, p = .028). Based on the results of this study, continuing education for high-alert medication and the development of an accurate protocol for single checking medication are needed to improve the stability of high-alert medication.

An Alert Data Mining Framework for Intrusion Detection System (침입탐지시스템의 경보데이터 분석을 위한 데이터 마이닝 프레임워크)

  • Shin, Moon-Sun
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.12 no.1
    • /
    • pp.459-466
    • /
    • 2011
  • In this paper, we proposed a data mining framework for the management of alerts in order to improve the performance of the intrusion detection systems. The proposed alert data mining framework performs alert correlation analysis by using mining tasks such as axis-based association rule, axis-based frequent episodes and order-based clustering. It also provides the capability of classify false alarms in order to reduce false alarms. We also analyzed the characteristics of the proposed system through the implementation and evaluation of the proposed system. The proposed alert data mining framework performs not only the alert correlation analysis but also the false alarm classification. The alert data mining framework can find out the unknown patterns of the alerts. It also can be applied to predict attacks in progress and to understand logical steps and strategies behind series of attacks using sequences of clusters and to classify false alerts from intrusion detection system. The final rules that were generated by alert data mining framework can be used to the real time response of the intrusion detection system.

Alert Correlation Analysis based on Clustering Technique for IDS (클러스터링 기법을 이용한 침입 탐지 시스템의 경보 데이터 상관관계 분석)

  • Shin, Moon-Sun;Moon, Ho-Sung;Ryu, Keun-Ho;Jang, Jong-Su
    • The KIPS Transactions:PartC
    • /
    • v.10C no.6
    • /
    • pp.665-674
    • /
    • 2003
  • In this paper, we propose an approach to correlate alerts using a clustering analysis of data mining techniques in order to support intrusion detection system. Intrusion detection techniques are still far from perfect. Current intrusion detection systems cannot fully detect novel attacks. However, intrucsion detection techniques are still far from perfect. Current intrusion detection systems cannot fully detect novel attacks or variations of known attacks without generating a large amount of false alerts. In addition, all the current intrusion detection systems focus on low-level attacks or anomalies. Consequently, the intrusion detection systems to underatand the intrusion behind the alerts and take appropriate actions. The clustering analysis groups data objects into clusters such that objects belonging to the same cluster are similar, while those belonging to different ones are dissimilar. As using clustering technique, we can analyze alert data efficiently and extract high-level knowledgy about attacks. Namely, it is possible to classify new type of alert as well as existed. And it helps to understand logical steps and strategies behind series of attacks using sequences of clusters, and can potentially be applied to predict attacks in progress.

Design and Implementation of Alert Analysis System using Correlation (연관성을 이용한 침입탐지 정보 분석 시스템의 설계 및 구현)

  • 이수진;정병천;김희열;이윤호;윤현수;김도환;이은영;박응기
    • Journal of KIISE:Information Networking
    • /
    • v.31 no.5
    • /
    • pp.438-449
    • /
    • 2004
  • With the growing deployment of network and internet, the importance of security is also increased. But, recent intrusion detection systems which have an important position in security countermeasure can't provide proper analysis and effective defence mechanism. Instead, they have overwhelmed human operator by large volume of intrusion detection alerts. In this paper, we propose an efficient alert analysis system that can produce high level information by analyzing and processing the large volume of alerts and can detect large-scale attacks such as DDoS in early stage. And we have measured processing rate of each elementary module and carried out a scenario-based test in order to analyzing efficiency of our proposed system.

Critical Thinking Disposition, Medication Error Risk Level of High-alert Medication and Medication Safety Competency among Intensive Care Unit Nurses (중환자실 간호사의 비판적 사고성향, 고위험약물 투약오류 위험수준 및 투약안전역량)

  • Lee, Yoon Hee;Lee, Youngjin;Ahn, Jeong-Ah;Kim, Hee Jun
    • Journal of Korean Critical Care Nursing
    • /
    • v.15 no.2
    • /
    • pp.1-13
    • /
    • 2022
  • Purpose : The study aimed to identify relationship among intensive care unit (ICU) nurses' critical thinking disposition, medication error risk level of high-alert medication, and medication safety competency, as well as the factors affecting medication safety competency. Methods : The participants were 266 ICU nurses of one higher-tier general hospital and one general hospital in Province. The data were collected using structured self-administered questionnaire from August 10 to August 31, 2021. Measurements included the critical thinking disposition questionnaire, nurses's knowledge of high-alert medication questionnaire, the medication safety competency scale. Data were analyzed using hierarchical multiple regressions using SPSS/WIN 28.0. Results : In the multiple regression analysis, the medication safety competence has a statistically significant correlation with the working department, the critical thinking disposition, and medication error risk level of high-alert medication. Conclusion : Based on the results of this study, it is suggested to develop and apply an educational strategy that can strengthen the knowledge and skills of critical thinking disposition and medication error risk level of high-alert medication to improve the ICU nurse's medication safety competency.

A Practical Effectiveness Analysis on Alert Verification Method Based on Vulnerability Inspection (취약점 점검을 활용한 보안이벤트 검증 방법의 실증적 효과분석)

  • Chun, Sung-Taek;Lee, Youn-Su;Kim, Seok-Hun;Kim, Kyu-Il;Seo, Chang-Ho
    • The Journal of the Korea Contents Association
    • /
    • v.14 no.11
    • /
    • pp.39-49
    • /
    • 2014
  • Cyber threats on the Internet are tremendously increasing and their techniques are also evolving constantly. Intrusion Detection System (IDS) is one of the powerful solutions for detecting and analyzing the cyber attacks in realtime. Most organizations deploy it into their networks and operate it for security monitoring and response service. However, IDS has a fatal problem in that it raises a large number of alerts and most of them are false positives. In order to cope with this problem, many approaches have been proposed for the purpose of automatically identifying whether the IDS alerts are caused by real attacks or not. In this paper, we present an alert verification method based on correlation analysis between vulnerability inspection results for real systems that should be protected and the IDS alerts. In addition, we carry out practical experiments to demonstrate the effectiveness of the proposed verification method using two types of real data, i.e., the IDS alerts and the vulnerability inspection results.

Design of Web based ID Traffic Analysis System (웹기반의 침입탐지 트래픽 분석 시스템 설계)

  • 한순재;오창석
    • Proceedings of the Korea Contents Association Conference
    • /
    • 2003.11a
    • /
    • pp.144-148
    • /
    • 2003
  • A general administrator's response ability plunged in confusion as intrusion detection system like an existing Snort display much alert messages on administrator's screen. Also, there are some possibilities to cause false positive. In this paper, to solve these problems, we designed Web-based ID(Intrusion Detection) traffic analysis system using correlation, and implemented so that administrator can check easily whole intrusion traffic state in web which dividing into normal and intrusion traffic using Libpcap, Snort, ACID, Nmap and Nessus. As a simulation result, it is proved that alert message number and false positive rate are minimized.

  • PDF

Correlation analysis of solar radiation and meteorological parameters on high ozone concentration (태양복사 및 기상요소의 고농도 오존형성에 대한 상관성 분석)

  • An, Jae Ho
    • KIEAE Journal
    • /
    • v.12 no.6
    • /
    • pp.93-98
    • /
    • 2012
  • The concerns on high ozone concentration phenomenon is significantly growing in Seoul metropolitan area including the industry complex area, like Shiwha Banwol area. The aims of this research is the analysis of relationship between high concentrations of $O_3$ and solar radiation parameters in atmosphere. The understanding of the effects of solar radiation intensity, humidity, high air temperature on ozone concentration in a day is very useful to provide a direction for reducing of the high ozone concentration to a local government or a metropolitan government. The correlation analysis between maximum ozone concentration and various meteorological parameters in 2009 - 2011 carried out using IBM's SPSS program. The results showed that the mean correlations coefficient (R) between daily Ozone maximum and solar radiation resulted R = 0.64 during 2011. May - September in 10 air pollution stations. In case of correlations between daily ozone maximum and relative humidity showed negative correlation R = -0.61. The correlation analysis with mean air temperature during 1-3 PM resulted R = 0.29. This low correlation coefficient could be corrected by using of categorized data of ozone concentration. The daily maximum ozone concentration is more dependent on peak solar radiation and high air temperature during 1-3 PM than its simple daily maximum values. The results of this research would be used to develop the high ozone alert system around Seoul metropolitan area. This correlation analysis could be partially integrated to prediction of ozone peak concentration in connection with other methods like classification and regression tree(CART).

A Big Data Analysis of the News Trends on Wireless Emergency Alert Service (뉴스 빅데이터를 활용한 재난문자 뉴스 게재 경향 분석)

  • Lee, Hyunji;Byun, Yoonkwan;Chang, Sekchin;Choi, Seong Jong;Oh, Seunghee;Lee, Yongtae
    • Journal of Broadcast Engineering
    • /
    • v.24 no.5
    • /
    • pp.726-734
    • /
    • 2019
  • This study investigates the number of news and correlated keywords concerning to Korean Wireless Emergency Alert(KWEA). The news was collected using BIGKinds, a news big data system provided by the Korea Press Foundation. When analyzing the annual published news articles, we investigated the frequency of the news grouped by disaster types, and the frequency of the news distinguishing between the earthquake and non-earthquake disasters, and finally the frequency of correlated keywords concerning to the disasters. We found that the KWEA news totaled 182 in 2016 due to the unprecedented powerful KyongJu earthquake, an increase of 20 times over the previous year. Ever since 2016, the news about the KWEA continued to hit high figures consistently. After the peak in KyongJu earthquake in 2016, the proportion of non-earthquakes had also increased in 2017 and 2018. Next, the keyword correlation analysis showed that the KWEA news gave major coverage to the following entities: The Ministry of the Interior and Safety which operates the KWEA, Korea Meteorological Administration, and the general public.

Correlation analysis between COVID-19 cases and emergency alerts service (COVID-19 확진자 수와 긴급재난문자 서비스의 상관관계 분석)

  • Ju, Sang-Lim;Kang, Hyunjoo;Oh, Seung-Hee
    • The Journal of the Institute of Internet, Broadcasting and Communication
    • /
    • v.21 no.5
    • /
    • pp.1-9
    • /
    • 2021
  • In Korea, various information related to COVID-19 has been provided to the public through an EAM (Emergency Alert Message) service using CBS (Cell Broadcast Service) technology to respond to COVID-19. In particular, local governments have been actively using the EAM service as a major means of responding to COVID-19. However, since excessive use of EAM service has caused the inconvenience of the people rather than the positive effects, the authority to be able to send EAMs has be limited. In this paper, with the purpose of providing primary data for establishing a plan to properly operate EAMs, we compare and analyze the number of EAMs issued and the incidence rate of COVID-19 cases during the period from 2020 to the present. In addition, the monthly EAM usage and incidence rate of COVID-19 cases are compared in detail and correlation analysis is performed for local governments that have issued many EAMs. We expect that the analysis results of this paper will be used as primary data in establishing strategies for EAM service to counteract the prolonged COVID-19.