胡鹤, 胡昌振, 姚淑萍. 基于攻击图的主动响应策略选择[J]. 北京工业大学学报, 2012, 38(11): 1659-1664.
    引用本文: 胡鹤, 胡昌振, 姚淑萍. 基于攻击图的主动响应策略选择[J]. 北京工业大学学报, 2012, 38(11): 1659-1664.
    HU He, HU Chang-zhen, YAO Shu-ping. Decision on Optimal Active Response Based on Intrusion Graph[J]. Journal of Beijing University of Technology, 2012, 38(11): 1659-1664.
    Citation: HU He, HU Chang-zhen, YAO Shu-ping. Decision on Optimal Active Response Based on Intrusion Graph[J]. Journal of Beijing University of Technology, 2012, 38(11): 1659-1664.

    基于攻击图的主动响应策略选择

    Decision on Optimal Active Response Based on Intrusion Graph

    • 摘要: 为帮助管理员预先识别网络系统脆弱性及面临的潜在安全威胁,提出一种基于攻击图的主动响应策略选择方法.该方法利用攻击图模型分析网络攻击行为,预测攻击路径并进行定量分析.根据攻击过程中得到的观察匹配攻击图,更新信念状态,最终利用部分马尔科夫博弈(POMG)算法进行最优主动响应策略选择.实验结果表明,基于攻击图的主动响应策略选择方法能提高响应的准确性和有效性.

       

      Abstract: To help network administrators to pre-identify potential vulnerabilities and security threats,an active response strategy selecting method based on attack graph was presented.In this method,the network attack graph model forecast aggressive behavior,and analysed attack path with quantitative metrics.The method used the observations during the attack process to match attack graph and updates the belief state.Finally,the partial observable Markov game(POMG) algorithm was used to choose optimal active response strategy.Experimental results show that the active response strategy selection method based on attack graph can improve the accuracy and effectiveness of the response.

       

    /

    返回文章
    返回