首页> 外文会议>International conference on Cyber Science and Technology Congress >Evaluation of Network Risk Using Attack Graph Based Security Metrics
【24h】

Evaluation of Network Risk Using Attack Graph Based Security Metrics

机译:基于攻击图的安全指标评估网络风险

获取原文

摘要

Network security management is a big challenge for network administrators due to increasing vulnerabilities. Vulnerabilities are the weakness of the network and allow malicious attackers access to resources controlled by an organization. To keep networks secure network administrators should be aware of all vulnerabilities through which an attacker can gain access. In this paper, we have considered the attack graph which describes how an attacker can compromise with the security of a network. To generate the attack graph, Multihost Multistage Vulnerability Analysis (MulVAL) tool is used. The generated graphs by this tool are logical attack graphs. These graphs are based on logical programming and based on dependencies among attack goal and configuration information. We have taken two security metrics, namely, exploitability metric and impact metric to analyze the risk associated with the network. Our preliminary results suggest that the size of the network has an impact on the vulnerability of a network.
机译:由于脆弱性增加,网络安全管理是网络管理员的一大挑战。漏洞是网络的弱点,并允许恶意攻击者访问由组织控制的资源。为了保持网络安全网络管理员应了解攻击者可以访问访问的所有漏洞。在本文中,我们考虑了攻击图,该攻击图描述了攻击者如何妥协网络的安全性。要生成攻击图,使用Multhost Multistage漏洞分析(Mulval)工具。此工具的生成图形是逻辑攻击图。这些图形基于逻辑编程,并基于攻击目标和配置信息之间的依赖性。我们已经采取了两个安全指标,即利用性度量和影响度量来分析与网络相关的风险。我们的初步结果表明,网络的大小对网络的漏洞产生了影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号