基于扩展网络攻击图的网络攻击策略生成算法
doi: 10.3724/SP.J.1146.2011.00414
A Network Attack Decision-making Algorithm Based on the Extended Attack Graph
-
摘要: 该文针对网络攻防领域攻击策略生成问题的特性,从攻击者角度研究网络攻击图。根据漏洞信息对攻击模板进行实例化,维护原子攻击以及攻击的前提条件和攻击效果等因果关系,形成扩展网络攻击图,并进一步提出基于扩展网络攻击图的网络攻击策略生成算法,该算法能够动态的预测下一步网络攻击效果,求出达到该攻击效果的攻击链及其成功概率,为网络攻击过程的顺利实施提供决策支持。通过网络攻防实验,验证了网络攻击图的扩张和网络攻击策略生成算法的正确性。Abstract: Considering the characteristics of attack decision-making issue in the domain of network attack and defense, the network attack graph model is extended from the view of attacker. Atomic attack is built by instantiating the attack pattern according the vulnerability. Maintaining the causality of precondition and effect condition of the atomic attack, therefore, the Extended Attack Graph (EAG) model is proposed. Furthermore, a network attack decision-making algorithm based on the extended attack graph is put forward; which can forecast attack effect dynamically and build the valid attack path and its occurrence probability through the in-depth analysis of the models features. Through the network attack and defense experiments, the results show the completeness and soundness of the algorithm.
-
Key words:
- Network attack /
- Attack template /
- Extended attack graph /
- Attack strategy /
- Effect predict
计量
- 文章访问数: 2634
- HTML全文浏览量: 126
- PDF下载量: 820
- 被引次数: 0