首页> 外文会议>Visualization for Computer Security >Garnet: A Graphical Attack Graph and Reachability Network Evaluation Tool
【24h】

Garnet: A Graphical Attack Graph and Reachability Network Evaluation Tool

机译:石榴石:图形化攻击图和可达性网络评估工具

获取原文
获取原文并翻译 | 示例

摘要

Attack graphs enable computation of important network security metrics by revealing potential attack paths an adversary could use to gain control of network assets. This paper presents GARNET (Graphical Attack graph and Reachability Network Evaluation Tool), an interactive visualization tool that facilitates attack graph analysis. It provides a simplified view of critical steps that can be taken by an attacker and of host-to-host network reachability that enables these exploits. It allows users to perform "what-if" experiments including adding new zero-day attacks, following recommendations to patch software vulnerabilities, and changing the attacker starting location to analyze external and internal attackers. Users can also compute and view metrics of assets captured versus attacker effort to compare the security of complex networks. For adversaries with three skill levels, it is possible to create graphs of assets captured versus attacker steps and the number of unique exploits required. GARNET is implemented as a Java application and is built on top of an existing C++ engine that performs reachability and attack graph computations. An initial round of user evaluations described in this paper led to many changes that significantly enhance usability.
机译:攻击图通过揭示对手可能用来控制网络资产的潜在攻击路径,从而能够计算重要的网络安全指标。本文介绍了GARNET(图形攻击图和可达性网络评估工具),这是一种交互式的可视化工具,可帮助攻击图分析。它提供了攻击者可以采取的关键步骤的简化视图以及启用这些漏洞的主机到主机网络的可达性。它允许用户执行“假设”实验,包括添加新的零日攻击,遵循有关修补软件漏洞的建议以及更改攻击者的起始位置以分析外部和内部攻击者的方法。用户还可以计算和查看捕获的资产与攻击者的努力指标,以比较复杂网络的安全性。对于具有三种技能水平的对手,可以创建捕获资产与攻击者步骤以及所需独特攻击次数之间的图表。 GARNET被实现为Java应用程序,并建立在现有的C ++引擎之上,该引擎执行可达性和攻击图计算。本文所述的第一轮用户评估导致许多变化,这些变化显着增强了可用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号