...
首页> 外文期刊>International Journal of Innovative Computing Information and Control >NETWORK ATTACK PATH PREDICTION BASED ON VULNERABILITY DATA AND KNOWLEDGE GRAPH
【24h】

NETWORK ATTACK PATH PREDICTION BASED ON VULNERABILITY DATA AND KNOWLEDGE GRAPH

机译:基于漏洞数据和知识图形的网络攻击路径预测

获取原文
获取原文并翻译 | 示例

摘要

With the increase in network security problems, accurately predicting the possible attack path of an attacker and fixing bugs has become a concern of network security administrators. To overcome the shortcomings of existing methods that mainly focus on the path prediction under the ideal attack scenario and ignore the key position of nodes in the network, a network attack path prediction method based on knowledge graph and attack graph model is proposed, which takes the knowledge graph as the core, uses CVSS's quantitative indicators for a single vulnerability, and combines the network security evaluation method to calculate the possible path. Experimental results show that this method can evaluate the security risk value of networks and nodes, which can point out the possible attack path of the attacker and calculate the risk value of the corresponding path. It can also rank the network node on the path and give repair suggestions. Hence, this method can provide a basis for the implementation of security protection strategies.
机译:随着网络安全问题的增加,准确地预测攻击者的可能攻击路径和修复错误已成为网络安全管理员的关注。为了克服主要关注理想攻击场景下的路径预测并忽略网络中节点的关键位置的现有方法的缺点,提出了一种基于知识图和攻击图模型的网络攻击路径预测方法,这需要了知识图形为核心,使用CVSS的单一漏洞的定量指示器,并结合网络安全评估方法来计算可能的路径。实验结果表明,该方法可以评估网络和节点的安全风险值,可以指出攻击者的可能攻击路径并计算相应路径的风险值。它还可以在路径上排列网络节点并提供修复建议。因此,该方法可以为实施安全保护策略的实施提供依据。

著录项

  • 来源
  • 作者

    YIFAN WANG; ZHI SUN; YE HAN;

  • 作者单位

    Advanced Technology Research Institute The 30th Research Institute of China Electronic Technology Group Corporation No. 8 Chuangye Road Chengdu 610093 P. R. China;

    Advanced Technology Research Institute The 30th Research Institute of China Electronic Technology Group Corporation No. 8 Chuangye Road Chengdu 610093 P. R. China;

    Advanced Technology Research Institute The 30th Research Institute of China Electronic Technology Group Corporation No. 8 Chuangye Road Chengdu 610093 P. R. China;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Network security; Knowledge graph; Attack graph; Attack path prediction; CVSS;

    机译:网络安全;知识图;攻击图;攻击路径预测;CVSS;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号