首页|基于三层攻击图的入侵意图自动识别模型

基于三层攻击图的入侵意图自动识别模型

扫码查看
针对预测入侵意图、发现网络漏洞困难等问题,提出了基于三层攻击图的入侵意图自动识别方法.该方法通过对底层报警数据的分析,建立了网络的三层攻击图,并通过对入侵意图的概率分析来定量攻击图.最后,通过最小关键点集生成算法来发现网络中的关键主机,从而为管理人员提供正确的网络安全策略.经验证,这种入侵意图自动识别的方法可行、有效,且具有简单易行等特点.
Automatic recognition model of intrusive intention based on three layers attack graph
In order to solve the difficulties of predicting intrusion attempts and finding network vulnerability,an automatic identification method of intrusion attempts is proposed,which is based on three layers attack graph.This method builds the network's three layers attack graph based on the analysis of the underlying alarm data.Then it determines the quantitative attack graph from the analysis of the probability of the intrusion attempts.Finally,the critical host in the network is found by the generation algorithm of the minimum key point set.Thus,the manager can get the right network security policy.It is verified that the proposed intrusion identification method is feasible,effective and simple.

computer engineeringnetwork securityintrusion detectionintrusion intentionattack graphs

罗智勇、尤波、许家忠、梁勇

展开 >

哈尔滨理工大学计算机科学与技术学院,哈尔滨150080

哈尔滨理工大学自动化学院,哈尔滨150080

辽东学院信息技术学院,辽宁丹东118003

计算机工程 网络安全 入侵检测 入侵意图 攻击图

黑龙江省教育厅科技面上项目

12521108

2014

吉林大学学报(工学版)
吉林大学

吉林大学学报(工学版)

CSTPCDCSCD北大核心EI
影响因子:0.792
ISSN:1671-5497
年,卷(期):2014.44(5)
  • 11
  • 5