Method Based on Attack Graph for Network Vulnerability Analysis


MAN Da-pengYANG WuYANG Yong-tian
Information Security Research Center,Harbin Engineering University,Harbin 150001,China
network security security assessment vulnerability analysis attack graphs
Because the behavior characteristics of attackers are not considered in the traditional attack graph analysis,the accuracy of the analysis results is decreased.To solve this problem,a global attack graph model is presented,and a method for analyzing network vulnerabilities based on global attack graphs is proposed.The transition probability of network states is used to describe the behavior characteristics of attackers.The reachablity of attack targets is calculated.The experimental results show that the proposed method can analyze the overall vulnerabilities of networks,and the analysis results are more objective and accurate.


Last Update: 2012-12-19