New Insights into Approaches to Evaluating Intention and Path for Network Multistep Attacks

Joint Authors

Zhang, Yuchen
Hu, Hao
Zhang, Hongqi
Liu, Yuling
Yang, Ying-jie

Source

Mathematical Problems in Engineering

Issue

Vol. 2018, Issue 2018 (31 Dec. 2018), pp.1-13, 13 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2018-07-10

Country of Publication

Egypt

No. of Pages

13

Main Subjects

Civil Engineering

Abstract EN

The attack graph (AG) is an abstraction technique that reveals the ways an attacker can use to leverage vulnerabilities in a given network to violate security policies.

The analyses developed to extract security-relevant properties are referred to as AG-based security evaluations.

In recent years, many evaluation approaches have been explored.

However, they are generally limited to the attacker’s “monotonicity” assumption, which needs further improvements to overcome the limitation.

To address this issue, the stochastic mathematical model called absorbing Markov chain (AMC) is applied over the AG to give some new insights, namely, the expected success probability of attack intention (EAIP) and the expected attack path length (EAPL).

Our evaluations provide the preferred mitigating target hosts and the vulnerabilities patching prioritization of middle hosts.

Tests on the public datasets DARPA2000 and Defcon’s CTF23 both verify that our evaluations are available and reliable.

American Psychological Association (APA)

Hu, Hao& Liu, Yuling& Yang, Ying-jie& Zhang, Hongqi& Zhang, Yuchen. 2018. New Insights into Approaches to Evaluating Intention and Path for Network Multistep Attacks. Mathematical Problems in Engineering،Vol. 2018, no. 2018, pp.1-13.
https://search.emarefa.net/detail/BIM-1207413

Modern Language Association (MLA)

Hu, Hao…[et al.]. New Insights into Approaches to Evaluating Intention and Path for Network Multistep Attacks. Mathematical Problems in Engineering No. 2018 (2018), pp.1-13.
https://search.emarefa.net/detail/BIM-1207413

American Medical Association (AMA)

Hu, Hao& Liu, Yuling& Yang, Ying-jie& Zhang, Hongqi& Zhang, Yuchen. New Insights into Approaches to Evaluating Intention and Path for Network Multistep Attacks. Mathematical Problems in Engineering. 2018. Vol. 2018, no. 2018, pp.1-13.
https://search.emarefa.net/detail/BIM-1207413

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1207413