کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
6880161 1443305 2018 37 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Realtime intrusion risk assessment model based on attack and service dependency graphs
ترجمه فارسی عنوان
مدل ارزیابی ریسک نفوذ در زمان واقعی بر اساس نمودار وابستگی به حمله و خدمات
کلمات کلیدی
گراف حمله شبکه، نمودار وابستگی خدمات شبکه، حمله ضربه، انتشار تاثیر به جلو، انتشار تأثیر عقب مانده، محاسبه هزینه پاسخ، سیستم پاسخ، پی گیری، رویداد هسته،
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
چکیده انگلیسی
Network services are becoming larger and increasingly complex to manage. It is extremely critical to maintain the users QoS, the response time of applications, and critical services in high demand. On the other hand, we see impressive changes in the ways in which attackers gain access to systems and infect services. When an attack is detected, an Intrusion Response System (IRS) is responsible to accurately assess the value of the loss incurred by a compromised resource and apply the proper responses to mitigate attack. Without having a proper risk assessment, our automated IRS will reduce network performance, wrongly disconnect users from the network, or result in high costs for administrators reestablishing services, and become a DoS attack for our network, which will eventually have to be disabled. In this paper, we address these challenges and we propose a new model to combine the Attack Graph and Service Dependency Graph approaches to calculate the impact of an attack more accurately compared to other existing solutions. To show the effectiveness of our model, a sophisticated multi-step attack was designed to compromise a web server, as well as to acquire root privilege. Our results illustrate the efficiency of the proposed model and confirm the feasibility of the approach in real-time.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Computer Communications - Volume 116, January 2018, Pages 253-272
نویسندگان
, , ,