Quantitative Method for Network Security Situation Based on Attack Prediction

المؤلفون المشاركون

Hu, Hao
Zhang, Hongqi
Liu, Yuling
Wang, Yongwei

المصدر

Security and Communication Networks

العدد

المجلد 2017، العدد 2017 (31 ديسمبر/كانون الأول 2017)، ص ص. 1-19، 19ص.

الناشر

Hindawi Publishing Corporation

تاريخ النشر

2017-07-03

دولة النشر

مصر

عدد الصفحات

19

التخصصات الرئيسية

تكنولوجيا المعلومات وعلم الحاسوب

الملخص EN

Multistep attack prediction and security situation awareness are two big challenges for network administrators because future is generally unknown.

In recent years, many investigations have been made.

However, they are not sufficient.

To improve the comprehensiveness of prediction, in this paper, we quantitatively convert attack threat into security situation.

Actually, two algorithms are proposed, namely, attack prediction algorithm using dynamic Bayesian attack graph and security situation quantification algorithm based on attack prediction.

The first algorithm aims to provide more abundant information of future attack behaviors by simulating incremental network penetration.

Through timely evaluating the attack capacity of intruder and defense strategies of defender, the likely attack goal, path, and probability and time-cost are predicted dynamically along with the ongoing security events.

Furthermore, in combination with the common vulnerability scoring system (CVSS) metric and network assets information, the second algorithm quantifies the concealed attack threat into the surfaced security risk from two levels: host and network.

Examples show that our method is feasible and flexible for the attack-defense adversarial network environment, which benefits the administrator to infer the security situation in advance and prerepair the critical compromised hosts to maintain normal network communication.

نمط استشهاد جمعية علماء النفس الأمريكية (APA)

Hu, Hao& Zhang, Hongqi& Liu, Yuling& Wang, Yongwei. 2017. Quantitative Method for Network Security Situation Based on Attack Prediction. Security and Communication Networks،Vol. 2017, no. 2017, pp.1-19.
https://search.emarefa.net/detail/BIM-1202863

نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)

Hu, Hao…[et al.]. Quantitative Method for Network Security Situation Based on Attack Prediction. Security and Communication Networks No. 2017 (2017), pp.1-19.
https://search.emarefa.net/detail/BIM-1202863

نمط استشهاد الجمعية الطبية الأمريكية (AMA)

Hu, Hao& Zhang, Hongqi& Liu, Yuling& Wang, Yongwei. Quantitative Method for Network Security Situation Based on Attack Prediction. Security and Communication Networks. 2017. Vol. 2017, no. 2017, pp.1-19.
https://search.emarefa.net/detail/BIM-1202863

نوع البيانات

مقالات

لغة النص

الإنجليزية

الملاحظات

Includes bibliographical references

رقم السجل

BIM-1202863