检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]国防科学技术大学电子信息系统复杂电磁环境效应国家重点实验室,长沙410073
出 处:《计算机科学》2014年第7期58-61,共4页Computer Science
摘 要:针对DoS攻击的弱点,降质服务攻击(RoQ)利用常见的网络或终端系统自适应机制中存在的安全漏洞,通过间歇性地发送高强度攻击脉冲,降低受害者端的服务性能。RoQ攻击的隐蔽性更强,攻击效率更高,同时也给其检测和评估提出了挑战。分析了目前针对RoQ攻击的防范措施,主要有修改协议、攻击流特征检测以及自适应检测修复等。通过构建RoQ攻防的随机Petri网模型,使用SPNP软件仿真得出了服务质量随攻防博弈过程的变化情况,从而对不同防范措施的效果进行评估,为网络战攻防决策提供一些参考。To avoid the weakness of DoS attack,Reduction of Quality Attacks(RoQ) utilizes the security vulnerabilities in self-adaptive mechanism of network and terminal system by sending high strength pulse intermittently, thus reducing the service quality of victims. RoQ attacks are more elusive and efficient, which brings challenges to its detection and e- valuation. Right now the defense technologies to RoQ attacks mainly include mending protocol, detection of attack flows' features,self-adaptive detection and repairmen, and so on. This paper builded a Stochastic Petri Net(SPN) and used it in SPNP software to simulate the service quality changes in the process of attack and defense game. By evalua- ting the effects of different defense ways, this paper offered some consultancy for decision-makings in cyber defense ac- tivities.
关 键 词:随机PETRI网 降质服务攻击RoQ 攻防博弈 效果评估
分 类 号:TP393[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.3