首页> 外文会议>IEEE International Conference on Computer and Communications >A network security situation assessment method based on attack intention perception
【24h】

A network security situation assessment method based on attack intention perception

机译:基于攻击意图感知的网络安全态势评估方法

获取原文

摘要

Through the analysis on the existing network security situation evaluation methods, this paper discovered that they can't accurately reflect the features of large-scale, synergetic, multi-stage gradually shown by network attack behaviors. For this purpose, the association between attack intention and network configuration information was deeply analyzed. Then a network security situation evaluation method based on attack intention recognition was proposed from the angle of attacker. Firstly, this paper conducted casual analysis on attack event, discovered the intrusion path; and simplified the intrusion path, recognized each stage implementing attack; then, taking the attack stage as element, conducted evaluation to network security situation; finally, based on the intrusion stage realized by attacker, combining with connectivity information, recognized the attack intention, and predicted the next attack stage. Through network example verification, it showed that the network security situation value could reflect the actual situation of attack more accurately; and it didn't need training on the historical sequence, so the method is more effective on situation prediction.
机译:通过对现有网络安全状况评估方法的分析,发现它们不能准确反映网络攻击行为逐渐呈现出的大规模,协同,多阶段的特征。为此,对攻击意图与网络配置信息之间的关联进行了深入分析。然后从攻击者的角度提出了一种基于攻击意图识别的网络安全态势评估方法。首先,对攻击事件进行了随意分析,发现了入侵路径。简化入侵路径,认识到实施攻击的各个阶段;然后,以攻击阶段为要素,对网络安全状况进行评估。最后,基于攻击者实现的入侵阶段,结合连接信息,识别攻击意图,并预测下一个攻击阶段。通过网络实例验证,表明网络安全状况值可以更准确地反映攻击的实际情况。并且不需要对历史序列进行训练,因此该方法在情况预测中更有效。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号