首页> 中文期刊> 《电子学报(英文版)》 >Research on Key Technologies of Network Security Situational Awareness for Attack Tracking Prediction

Research on Key Technologies of Network Security Situational Awareness for Attack Tracking Prediction

         

摘要

This paper analyzed the existing network security situation evaluation methods and discovered that they cannot accurately reflect the features of large-scale,synergetic,multi-stage gradually shown by network attack behaviors.For this purpose,the association between attack intention and network configuration information was deep analyzed.Then a network security situation evaluation method based on attack intention recognition was proposed.Unlike traditional method,the evaluation method was based on intruder.This method firstly made causal analysis of attack event and discovered and simplified intrusion path to recognize every attack phases,then realized situation evaluation based on the attack phases.Lastly attack intention was recognized and next attack phase was forecasted based on achieved attack phases,combined with vulnerability and network connectivity.A simulation experiments for the proposed network security situation evaluation model is performed by network examples.The experimental results show that this method is more accurate on reflecting the truth of attack.And the method does not need training on the historical sequence,so the method is more effective on situation forecasting.

著录项

  • 来源
    《电子学报(英文版)》 |2019年第1期|162-171|共10页
  • 作者单位

    Artificial Intelligence Research Center, National Innovation Institute of Defense Technology, Beijing 100072, China;

    Information Engineering University, Zhengzhou 450001, China;

    Information Engineering University, Zhengzhou 450001, China;

  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号