检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]河南理工大学计算机科学与技术学院,河南焦作454000
出 处:《计算机应用研究》2018年第2期515-520,共6页Application Research of Computers
基 金:国家自然科学基金资助项目(61472160);国家科技支撑计划资助项目(2014BAH29F03)
摘 要:当前的网络攻击图大多是以攻击代价为主要指标,均是假定成本以及收益等各关键要素之间是相互独立的,而忽视了对这些关键要素之间的关联性进行定量分析。为了解决该问题,首先定义了一种基于状态转移的内部网络攻击模型;通过引入强度系数这一变量来定量分析攻击复杂度和被发现的风险值之间的关系;然后给出上述变量实现定量分析攻击复杂度和被发现风险值之间关系的具体实现方式;其次,从优化花费的计算着手,根据该变量进而得到改进后的攻击图生成算法。仿真实验结果表明,此攻击图算法更能反映现实攻击过程,能得到更加精简、直观的攻击图。At present, the main indicator for attack graph of network is the cost of an attack, and it is assumed that cost and benefit are independent of each other, and quantitative analysis of the correlation among these key elements is ignored. In or- der to solve this problem, firstly, this paper defined an internal network attack model based on state transition. It introduced a strength coefficient to quantitatively analyze the relationship between the attack complexity and the risk value of display. Then it gave a realization method of the above variable to analyze the relationship between the attack complexity and the risk value of display. Secondly, based on this variable, the improved generation algorithm for attack graph was used to obtain the optimal cost. Finally, the simulation experiment shows that the new attack graph is more concise and more intuitive, in addition, the attack graph can also reflect the reality of the attack process.
关 键 词:攻击图 状态模型 攻击复杂度 被发现风险值 强度系数 花费
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.225