信阳师范学院学报(自然科学版)
信暘師範學院學報(自然科學版)
신양사범학원학보(자연과학판)
JOURNAL OF XINYANG NORMAL UNIVERSITY(NATURAL SCIENCE EDITION)
2015年
1期
146-150
,共5页
网络安全%攻击图%隐马尔可夫模型%复杂度%风险评估%攻击路径%威胁等级
網絡安全%攻擊圖%隱馬爾可伕模型%複雜度%風險評估%攻擊路徑%威脅等級
망락안전%공격도%은마이가부모형%복잡도%풍험평고%공격로경%위협등급
network security%attack graph%hidden Markov model%complexity%risk assessment%attack path%threat level
为了解决传统网络安全风险评估不能有效评价网络安全风险动态变化的缺点,根据网络安全的特性,提出了攻击图和隐马尔可夫模型(HMM)相结合的网络安全风险评估方法。采用攻击图生成网络攻击路径,从复杂度和防御能力等方面量化攻击威胁等级,利用隐马尔可夫模型计算攻击路径的攻击成功率,结合网络资产的重要程度确定网络安全风险值。通过实例分析表明,该方法能够提高网络安全风险评估的准确性,能够有效地对网络安全状况进行分析,具有较高的实用性。
為瞭解決傳統網絡安全風險評估不能有效評價網絡安全風險動態變化的缺點,根據網絡安全的特性,提齣瞭攻擊圖和隱馬爾可伕模型(HMM)相結閤的網絡安全風險評估方法。採用攻擊圖生成網絡攻擊路徑,從複雜度和防禦能力等方麵量化攻擊威脅等級,利用隱馬爾可伕模型計算攻擊路徑的攻擊成功率,結閤網絡資產的重要程度確定網絡安全風險值。通過實例分析錶明,該方法能夠提高網絡安全風險評估的準確性,能夠有效地對網絡安全狀況進行分析,具有較高的實用性。
위료해결전통망락안전풍험평고불능유효평개망락안전풍험동태변화적결점,근거망락안전적특성,제출료공격도화은마이가부모형(HMM)상결합적망락안전풍험평고방법。채용공격도생성망락공격로경,종복잡도화방어능력등방면양화공격위협등급,이용은마이가부모형계산공격로경적공격성공솔,결합망락자산적중요정도학정망락안전풍험치。통과실례분석표명,해방법능구제고망락안전풍험평고적준학성,능구유효지대망락안전상황진행분석,구유교고적실용성。
In order to solve the shortcomings that traditional network security risk assessment can not evaluate the network security risk effectively and dynamically , according to the characteristics of network security , the network se-curity risk assessment method combined with attack graph and hidden Markov model was proposed .The attack graph generated the network attack path ,the attack threat level was quantified from the aspects of complexity and defense abil -ity, the attack success rate of the attack path was calculated using a hidden Markov model , the network security risk value was determined with the importance of network assets .The research example showed that the method can improve the accuracy of network security risk assessment , analyze effectively the network security situation , and has higher practicability .