首页> 外文会议>International Conference on Communications and Networking in China >Generating network attack graphs for security alert correlation
【24h】

Generating network attack graphs for security alert correlation

机译:生成用于安全警报相关性的网络攻击图

获取原文

摘要

Most network administrators have got the unpleasant experience of being overwhelmed by tremendous unstructured network security alerts produced by heterogeneous network devices. To date, various approaches have been proposed to correlate security alerts, including the adoption of network attack graphs to clarify their causal relationship. However, there still lacks an operational method to generate attack graphs tailored for alert correlation, especially in large scale network environments. In this paper, we propose a kind of attack graph which can be built in polynomial time using an intuitive object-oriented method. Based on the graph, a criterion is given out to correlate security alerts into scenarios. As practice, a prototype system is implemented to testify the feasibility of the approaches.
机译:大多数网络管理员都有令人不快的经验,它被异构网络设备产生的巨大的非结构化网络安全警报所淹没。迄今为止,已经提出了各种方法来关联安全警报,包括采用网络攻击图来澄清其因果关系。然而,仍然缺乏用于为警报相关而定制的攻击图的操作方法,特别是在大规模网络环境中。在本文中,我们提出了一种攻击图,可以使用直观面向对象的方法在多项式时间内构建。基于该图形,给出了一个标准,以将安全警报联系到方案。作为实践,实施了原型系统以证明方法的可行性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号