首页> 外文会议>Annual meeting of the Institute of Nuclear Materials Management >Cyber-Attack Analysis of a School Computer Network
【24h】

Cyber-Attack Analysis of a School Computer Network

机译:学校计算机网络的网络攻击分析

获取原文

摘要

Cyber attacks on higher education institutions have been on the increase, particularly because, in contrast to targets like banks and financial institutions, college and university computer networks have historically been as open and inviting as their campuses. Such institutions are vulnerable to security breaches that may expose them to losses and other risks. There is a need to determine which paths are most vulnerable to attacks so as to implement ways of reducing the vulnerability. Sections on the school's network system for possible cyber-attacks include the Database server, Mail server, VOIP, Library/resources and Administrative server. Other sections include the firewalls and devices that connect the Internet to the schools local area network (LAN). In this paper, the attack tree modeling techniques of quantifying cyber-attacks for a school network system is presented. Attack trees are developed by decomposing the path in the network system to where attacks are plausible. This work focuses on possible attacks by external adversary on a database server because of the sensitivity of the information on the database. The vulnerabilities on the network system were represented by nodes on the Attack Tree. Two possible attack paths were constructed for the system. One attack path represents attacks through the internet, and the other represents attacks through the wireless access points in the school vicinity. The probability of success of the event, the attack payoff and the commitment of the attacker to intrude is estimated for the leaf nodes and this is used to calculate the Return on Attack up the attack tree. A Return on Attack (R) value was then calculated for the root node. Countermeasures were then implemented and a modified network system obtained. The R values for the nodes were observed to decrease, after upgrading the network security systems with these countermeasures. The knowledge of the possible attacks allows the system administrators to provide adequate defenses against cyber attack scenarios.
机译:对高等教育机构的网络攻击一直在增加,特别是因为与银行和金融机构等目标相反,大学和大学的计算机网络在历史上一直像其校园一样开放和诱人。这样的机构容易受到安全漏洞的破坏,这可能会使他们遭受损失和其他风险。有必要确定哪些路径最容易受到攻击,以实现减少漏洞的方法。学校网络系统上可能出现的网络攻击的部分包括数据库服务器,邮件服务器,VOIP,图书馆/资源和管理服务器。其他部分包括将Internet连接到学校局域网(LAN)的防火墙和设备。本文提出了一种量化学校网络系统网络攻击的攻击树建模技术。通过将网络系统中可能发生攻击的路径分解,可以开发出攻击树。由于数据库信息的敏感性,这项工作着重于外部对手对数据库服务器的可能攻击。网络系统上的漏洞由攻击树上的节点表示。为系统构造了两种可能的攻击路径。一种攻击路径表示通过互联网的攻击,另一种攻击路径表示通过学校附近的无线访问点的攻击。对于叶节点,估计事件成功的概率,攻击收益和攻击者入侵的承诺,并将其用于计算攻击树的攻击回报。然后,为根节点计算了攻击的返回值(R)。然后实施了对策,并获得了改进的网络系统。使用这些对策升级网络安全系统后,观察到节点的R值减小。对可能的攻击的了解使系统管理员可以针对网络攻击情形提供足够的防御。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号