首页> 外文会议>2014 IEEE 38th Annual International Computers, Software and Applications Conference >A Countermeasure Recommendation System against Targeted Attacks with Preserving Continuity of Internal Networks
【24h】

A Countermeasure Recommendation System against Targeted Attacks with Preserving Continuity of Internal Networks

机译:保持内部网络连续性的针对性攻击对策推荐系统

获取原文
获取原文并翻译 | 示例

摘要

Recently, the sophistication of targeted cyber attacks makes conventional countermeasures useless to defend our network. Proper network design, i.e., Moderate segmentation and adequate access control, is one of the most effective countermeasures to prevent stealth activities of the attacks inside the network. By paying attention to the violation of the control, we can be aware of the existence of the attacks. In case that suspicious activities are found, we should adopt more strict design for further analysis and mitigation of damage. However, an organization must assume that its network administrators have full knowledge of its business and enough information of its network structure for selecting the most suitable design. This paper discusses a recommendation system to enhance the ability of a semi-automatic network design system previously proposed by us. Our new system evaluates on the viewpoint of two criteria, the effectiveness against malicious activities and the impact on business. The former takes the infection probability and hazardousness of communication into account and the latter considers the impact of the countermeasure which affects the organization's activities. By reviewing the candidate of the countermeasures with these criteria, the most suitable one to the organization can be selected.
机译:最近,针对性网络攻击的复杂性使常规对策无法保护我们的网络。适当的网络设计,即适度的分段和适当的访问控制,是防止网络内部攻击的隐身活动的最有效对策之一。通过注意违反控制的行为,我们可以知道攻击的存在。如果发现可疑活动,我们应该采用更严格的设计,以便进一步分析和减轻损害。但是,组织必须假定其网络管理员具有充分的业务知识和足够的网络结构信息,才能选择最合适的设计。本文讨论了一种建议系统,以增强我们先前提出的半自动网络设计系统的功能。我们的新系统从两个标准的角度进行评估,即针对恶意活动的有效性和对业务的影响。前者考虑了传播的感染可能性和危险性,而后者则考虑了影响组织活动的对策的影响。通过使用这些标准审查候选对策,可以选择最适合组织的对策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号