A quantitative method for evaluating network security based on attack graph

Yukun Zheng, Kun Lv*, Changzhen Hu

*此作品的通讯作者

科研成果: 书/报告/会议事项章节会议稿件同行评审

8 引用 (Scopus)

摘要

With the rapid development of network, network security issues become increasingly important. It is a tough challenge to evaluate the network security due to the increasing vulnerabilities. In this paper, we propose a quantitative method for evaluating network security based on attack graph. We quantify the importance of nodes and the maximum reachable probability of nodes, and construct a security evaluation function to calculate the security risk score. Our approach focuses on the attacker’s view and considers the most important factors that may affect the network security. The parameters we use are easily to be acquired in any network. Thus, the assessment score gotten through the evaluation function can comprehensively reflect the security level. According to the security risk value, security professionals can take appropriate countermeasures to harden the network. Experimental results prove that this model solves the security evaluation problem efficiently.

源语言英语
主期刊名Network and System Security - 11th International Conference, NSS 2017, Proceedings
编辑Zheng Yan, Refik Molva, Wojciech Mazurczyk, Raimo Kantola
出版商Springer Verlag
349-358
页数10
ISBN(印刷版)9783319647005
DOI
出版状态已出版 - 2017
活动11th International Conference on Network and System Security, NSS 2017 - Helsinki, 芬兰
期限: 21 8月 201723 8月 2017

出版系列

姓名Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
10394 LNCS
ISSN(印刷版)0302-9743
ISSN(电子版)1611-3349

会议

会议11th International Conference on Network and System Security, NSS 2017
国家/地区芬兰
Helsinki
时期21/08/1723/08/17

指纹

探究 'A quantitative method for evaluating network security based on attack graph' 的科研主题。它们共同构成独一无二的指纹。

引用此