计算机科学 ›› 2013, Vol. 40 ›› Issue (2): 148-152.

• 信息安全 • 上一篇    下一篇

基于攻击图的多Agent网络安全风险评估模型

杨宏宇,江 华   

  1. (中国民航大学计算机科学与技术学院 天津300300)
  • 出版日期:2018-11-16 发布日期:2018-11-16

Multi-Agents Network Security Risk Evaluation Model Based on Attack Graph

  • Online:2018-11-16 Published:2018-11-16

摘要: 为了自主保障计算机网络的安全并对网络安全风险进行自动化评估,提出一种基于攻击图的多Agcnt网络安全风险评估模型(Multi-agents Risk Evaluation Model Based on Attack Uraph, MREMBAG)。首先提出网络风险评佑模型,设计了主从Agent的功能架构和关联关系分析流程。利用全局攻击图生成算法,以动态数据信息作为输入,通过主从Agcnt协同分析并构建攻击路径。基于对目标网络的攻击路径、组件、主机、网络的风险指数、漏洞及关联风险指数的计算,获取目标网络的安全风险指标仿真实验结果验证了该评佑方法的可行性和有效性。

关键词: 网络安全,风险评估,多Agent,攻击图

Abstract: In order to protect the network and evaluate the security risk of network automatically,a novel multi-agents risk evaluation model based on attack graph (MREMBAG) was presented. First, a well-structured model to manage entire evaluation process and the function architecture of primary-slave agents were designed. Then primary-slave agents constructed the attack path and generated the attack graph by using the attract graph building algorithm with the input of the dynamic data information collected by components. Finally, the risk indexes of attack path, components, hosts, the vulnerabilities and nodes correlation risk indexes were determined to calculate the target network quantitatively. The experimental results demonstrate that the MREMI3AG is a more practical and efficient way to evaluate the network security risk.

Key words: Network security, Risk evaluation, Multi Agents, Attack graph

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!