一种基于广义随机着色Petri网的网络攻击组合模型
doi: 10.3724/SP.J.1146.2013.00090
Attack Composition Model Based on Generalized Stochastic Colored Petri Nets
-
摘要: 攻击行为建模对网络安全分析与评估具有重要的作用。该文定义了一种基于广义随机着色Petri网的网络攻击组合模型,该模型能清晰表达攻击组合中各组合部分之间的关联关系,给出了攻击行为、攻击组合运算的定义和攻击组合的建立算法,并对组合模型的结构复杂度进行了度量。在此基础上,从系统性能分析的角度对时间代价进行评估。针对网络实例的分析进一步验证了所提出的组合模型及相关计算方法的有效性。Abstract: Attack modeling plays an important role in network security analysis and assessment. A Generalized Stochastic Colored Petri Net (GSCPN) model for attack composition is proposed. To each attack, a GSCPN model is constructed to describe the relation of components graphically. Operators to construct attack composition from known ones as blocks are defined formally. The algorithm to construct a composite attack is delivered, and the structural complexity of combination?model is measured also. On this basis, the time cost of vulnerabilities is assessed. The network example validates further the effectiveness of the proposed composition model and calculation method.
-
Key words:
- Petri net /
- Attack composition /
- Modeling /
- Time cost
计量
- 文章访问数: 2138
- HTML全文浏览量: 91
- PDF下载量: 853
- 被引次数: 0