摘要
根据网络攻防对抗实时变化的特点,提出了一种网络安全状态的动态评估方法。首先,根据敌我双方攻防特点,建立基于脆弱性状态迁移的网络安全模型;然后,在此基础上量化攻击成功的可能性和产生的后果,并分析攻防对抗行为对关键资产保密性、完整性、可用性等安全属性的影响,并通过实验验证了该方法的可行性及有效性。
According to the characteristic of the network attack-defense real-time variation, a dynamic assessment method of network security state was presented. Firstly, a network security model based on vulnerability state transition was built,according to the characteristics of attack and defense both sides. Then the success probability and the consequences of attack success were quantitated, and the effects of attack-defense confrontation behaviors on the key asset security attributes such as confidentiality, integrity and availability were analyzed. Finally, the feasibility and validity of this method were proved through an experiment.
出处
《计算机科学》
CSCD
北大核心
2013年第11A期214-218,共5页
Computer Science
基金
国防基础科研项目(A0420110006)资助
关键词
攻击图
安全评估
可视化
攻防对抗
Attack grapk, Security assessment, Visualization, Attack-defense confrontation