TY - JOUR
T1 - Intrusive intention recognition based on attack path graph
AU - Peng, Wu
AU - Hu, Chang Zhen
AU - Yao, Shu Ping
PY - 2010/9
Y1 - 2010/9
N2 - In order to predict an attacker's high level goals and assess network security situation, an intrusive intention recognition method is presented in this paper. Concept and taxonomy of intrusive intention are introduced at first. Then, to reduce complexity of understanding and analysis, a method of hierarchical attack path graph generation is proposed to recognize intrusive intention. Based on the attack path graph, the algorithms for evaluating quantitatively intention accessibility, reliable probability, attack path prediction and possible minimum attack path are developed. Next, economical and effective protective measures are addressed to block attackers' intention to be achieved, by applying minimum vertex cut set theory to directed graph. Finally several experiments are done to prove the feasibility and validity of this method.
AB - In order to predict an attacker's high level goals and assess network security situation, an intrusive intention recognition method is presented in this paper. Concept and taxonomy of intrusive intention are introduced at first. Then, to reduce complexity of understanding and analysis, a method of hierarchical attack path graph generation is proposed to recognize intrusive intention. Based on the attack path graph, the algorithms for evaluating quantitatively intention accessibility, reliable probability, attack path prediction and possible minimum attack path are developed. Next, economical and effective protective measures are addressed to block attackers' intention to be achieved, by applying minimum vertex cut set theory to directed graph. Finally several experiments are done to prove the feasibility and validity of this method.
KW - Attack path graph
KW - Intrusive intention recognition
KW - Minimum cut set theory
UR - http://www.scopus.com/inward/record.url?scp=78149247594&partnerID=8YFLogxK
M3 - Article
AN - SCOPUS:78149247594
SN - 1001-0645
VL - 30
SP - 1077
EP - 1081
JO - Beijing Ligong Daxue Xuebao/Transaction of Beijing Institute of Technology
JF - Beijing Ligong Daxue Xuebao/Transaction of Beijing Institute of Technology
IS - 9
ER -