首页> 外文会议>International Conference on Computer Communication and Informatics >Analysis of Complex Networks for Security Issues using Attack Graph
【24h】

Analysis of Complex Networks for Security Issues using Attack Graph

机译:使用攻击图分析复杂网络中的安全问题

获取原文

摘要

Organizations perform security analysis for assessing network health and safe-guarding their growing networks through Vulnerability Assessments (AKA VA Scans). The output of VA scans is reports on individual hosts and its vulnerabilities, which, are of little use as the origin of the attack can't be located from these. Attack Graphs, generated without an in-depth analysis of the VA reports, are used to fill in these gaps, but only provide cursory information. This study presents an effective model of depicting the devices and the data flow that efficiently identifies the weakest nodes along with the concerned vulnerability's origin.The complexity of the attach graph using MulVal has been greatly reduced using the proposed approach of using the risk and CVSS base score as evaluation criteria. This makes it easier for the user to interpret the attack graphs and thus reduce the time taken needed to identify the attack paths and where the attack originates from.
机译:组织执行安全性分析,以评估网络运行状况并通过漏洞评估(AKA VA扫描)来保护其不断发展的网络。 VA扫描的输出是有关单个主机及其漏洞的报告,这些漏洞用处不大,因为无法从这些主机中找到攻击的源头。无需对VA报告进行深入分析即可生成攻击图,用于填补这些空白,但仅提供粗略的信息。这项研究提出了一个描述设备和数据流的有效模型,该模型可以有效地识别最弱的节点以及相关漏洞的来源。使用建议的使用风险和CVSS基数的方法,使用MulVal的附加图的复杂性已大大降低得分作为评估标准。这使用户更容易解释攻击图,从而减少了识别攻击路径和攻击来源所需的时间。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号