检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
出 处:《计算机安全》2013年第7期7-10,共4页Network & Computer Security
基 金:国家自然科学基金(61173159);四川大学青年教师科研启动基金(2011SCU11086)
摘 要:为了及时发现网络中潜在的攻击威胁、计算网络的潜在风险,提出了一种基于攻击图的网络风险计算方法。通过关联网络中的漏洞建立攻击图、发现潜在的攻击序列和威胁,从而计算网络潜在的风险值。此方法考虑了攻击路径权重和资产权重对网络风险的影响,使计算结果更符合实际情况。实验结果表明,提出的风险计算方法能够准确和有效地计算网络的潜在风险。In order to discover the potential threat of attack in the network in time and compute the potential network risks,the network risk calculation model based on attack graph was introduced.The model established attack graph through associated weak points in the network,and found out potential attack sequence and threats,calculated the network potential risk value.The model took into account the attack path weight and the assets weight,which made the result more in line with the actual situation.Experimental results showed that,the potential risk which the computational model calculated was more accurate and effective.
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.3