Dynamic Risk Assessment Considering Network Security Situation and Asset Value
The upstream and downstream industrial chain of the petrochemical industry is characterized by complex applications and large-scale devices,and if the core assets are damaged,it will seriously affect production safety and cause significant losses.In order to quickly recognize network security risks and make decisions,this paper proposes a dynamic attack graph probability computation model for the problem that current attack graph models less consider the dynamic changes of the network environment and the value of assets.By calculating the a posterior probability of atomic attack relative to the observed event,fitting changes of vulnerability risk over time,and considering the asset values of the attribute nodes in the attack graph,the paper dynamically calculates the maximum cumulative probability paths and maximum risk points in the attack graph.Experimental results indicate that the proposed method is more reasonable and effective,and has important value for developing network security strategies and implementing protective measures.