首页> 外文会议>Advances in grid and pervasive computing >An Integrated Network Scanning Tool for Attack Graph Construction
【24h】

An Integrated Network Scanning Tool for Attack Graph Construction

机译:用于攻击图构建的集成网络扫描工具

获取原文
获取原文并翻译 | 示例

摘要

Scanning is essential for gathering information about the actual state of computer systems or networks. Therefore, it is always taken as the first step of potential attacks against targets. In certain cases, scanning itself is categorized as an attack. Scanning can on the other hand be used for the right purposes, for example, checking the system configurations, verifying firewall rules, proofing security polices, as well as monitoring the large scale network environment. Prom this point of view, scanning is an effective method for system or network management, security measurement and auditing. To visualize, analyze, and finally evaluate the data gathered by scanners, Attack Graph plays an important role. High quality information about the target system or network is the prerequisite for constructing the attack graph. However, different implementations of scanners have different capabilities and always result in different kinds of outputs. These outputs are usually heterogeneous and not machine-readable, which makes the further analysis a challenging task. In this paper, we examine common types of scanners and demonstrate how to combine multiple types of scanners. The results of all the involved scanners are integrated into a well-designed and consistent data structure, which can not only be well interpreted by human security specialists but also be directly fed into an attack graph construction tool.
机译:扫描对于收集有关计算机系统或网络的实际状态的信息至关重要。因此,始终将其作为潜在攻击目标的第一步。在某些情况下,扫描本身被归类为攻击。另一方面,扫描可以用于正确的目的,例如,检查系统配置,验证防火墙规则,验证安全策略以及监视大规模网络环境。从这个角度出发,扫描是进行系统或网络管理,安全性度量和审核的有效方法。为了可视化,分析并最终评估扫描仪收集的数据,攻击图起着重要的作用。有关目标系统或网络的高质量信息是构造攻击图的前提。但是,扫描仪的不同实现方式具有不同的功能,并始终导致不同种类的输出。这些输出通常是异构的,并且不是机器可读的,这使得进一步分析成为一项艰巨的任务。在本文中,我们检查了常见的扫描仪类型,并演示了如何组合多种类型的扫描仪。所有涉及的扫描程序的结果都集成到一个设计良好且一致的数据结构中,不仅可以由人类安全专家很好地解释,而且可以直接输入到攻击图构建工具中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号