首页> 外文会议>IEEE Military Communications Conference >ENABLING CYBER SITUATION AWARENESS, IMPACT ASSESSMENT, AND SITUATION PROJECTION
【24h】

ENABLING CYBER SITUATION AWARENESS, IMPACT ASSESSMENT, AND SITUATION PROJECTION

机译:实现网络情况意识,影响评估和情况预测

获取原文

摘要

In the paper we focus on (i) an assessment of impact on missions or business processes resulting from cyber attacks and (ii) the subsequent projection of further possible attacks and corresponding impact assessments. A reference model for impact assessment and situation projection (IASP) is provided, based on which we propose a constraint satisfaction (CS) algorithmic approach for performing MSP. The nodes of a constraint network contain variables with accompanying certainty factors characterizing aspects of missions, services, IT assets, network connections, known vulnerabilities, safeguards, cyber alerts, attack categories, and partial models of complex stepping-stone or island-hopping attacks. Given constraints among these variables, e.g. mission X depends on services Y and Z, the CS algorithm calculates IASP with degree of certainty. We demonstrate the approach on dataset containing audit trails, IDS alerts, and TCP traffic.
机译:在论文中,我们专注于(i)对网络攻击和(ii)随后的进一步可能攻击和相应的影响评估进行了评估的对特派团或业务流程的影响。提供了影响评估和情境投影(IASP)的参考模型,基于我们提出了用于执行MSP的约束满足(CS)算法方法。约束网络的节点包含具有伴随确定性因素的变量,其特征在于特征,服务,IT资产,网络连接,已知漏洞,保护,网络警报,攻击类别以及复杂的踏脚石或岛跳攻击的部分模型。在这些变量中给定约束,例如Mission X取决于服务Y和Z,CS算法以确定性的程度计算IASP。我们展示了包含审计跟踪,IDS警报和TCP流量的数据集的方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号