计算机工程与应用 ›› 2012, Vol. 48 ›› Issue (4): 1-4.

• 博士论坛 • 上一篇    下一篇

基于全网攻击模型的攻击策略挖掘与危险评估

王纯子1,张 斌2,黄光球2   

  1. 1.西安工程大学 管理学院,西安 710048
    2.西安建筑科技大学 管理学院,西安 710055

  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2012-02-01 发布日期:2012-04-05

Attack strategy digging and risk evaluation based on global network attack model

WANG Chunzi1, ZHANG Bin2, HUANG Guangqiu2   

  1. 1.School of Management, Xi’an Polytechnic University, Xi’an 710048, China
    2.School of Management, Xi’an University of Architecture & Technology, Xi’an 710055, China

  • Received:1900-01-01 Revised:1900-01-01 Online:2012-02-01 Published:2012-04-05

摘要:

针对复杂网络攻击建模的不足,提出一种基于对象Petri网的全网攻击模型。通过对精确路径和粗糙路径的定义,提出了全网攻击模型的自动生成和路径挖掘算法。攻击路径集综合反映了不完备信息下主机间的确定攻击关系和可能攻击关系,结合攻击效能和路径粗糙度指标给出了定量的网络危险评估方法。

关键词: 网络安全, 全网攻击模型, 对象Petri网, 粗糙攻击路径, 危险性评估

Abstract: Aiming at the deficiency of complex network attack model, this paper proposes a global network attack model based on object Petri net. By the definition of accurate path and rough path, an automatic generation of the model and path digging algorithm is presented. The attack path set reflects the certain and uncertain attack relationship under incomplete information. Combined with attack performance and path rough degree, a quantitative network risk evaluation method is given.

Key words: network security, global network attack model, object Petri net, rough attack path, risk evaluation