首页> 外文会议>Data and Applications Security XXII >An Attack Graph-Based Probabilistic Security Metric
【24h】

An Attack Graph-Based Probabilistic Security Metric

机译:基于攻击图的概率安全度量

获取原文
获取原文并翻译 | 示例

摘要

To protect critical resources in today's networked environments, it is desirable to quantify the likelihood of potential multi-step attacks that combine multiple vulnerabilities. This now becomes feasible due to a model of causal relationships between vulnerabilities, namely, attack graph. This paper proposes an attack graph-based probabilistic metric for network security and studies its efficient computation. We first define the basic metric and provide an intuitive and meaningful interpretation to the metric. We then study the definition in more complex attack graphs with cycles and extend the definition accordingly. We show that computing the metric directly from its definition is not efficient in many cases and propose heuristics to improve the efficiency of such computation.
机译:为了保护当今网络环境中的关键资源,希望量化结合了多个漏洞的潜在多步攻击的可能性。由于漏洞之间的因果关系模型(即攻击图),现在这变得可行。本文提出了一种基于攻击图的网络安全概率度量标准,并对其有效计算进行了研究。我们首先定义基本指标,并为该指标提供直观且有意义的解释。然后,我们在带有循环的更复杂的攻击图中研究定义,并相应地扩展定义。我们表明,在许多情况下,直接根据其定义来计算指标并不高效,并提出启发式方法来提高此类计算的效率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号