网络与信息安全学报 ›› 2016, Vol. 2 ›› Issue (7): 49-58.doi: 10.11959/j.issn.2096-109x.2016.00073

• 学术论文 • 上一篇    下一篇

基于模糊层次分析的木马攻击效果评估技术研究

曾辰熙,吴泉源,李爱平,江荣()   

  1. 国防科学技术大学计算机学院,湖南 长沙 410073
  • 修回日期:2016-06-24 出版日期:2016-07-15 发布日期:2020-03-26
  • 作者简介:曾辰熙(1987-),男,湖南长沙人,国防科学技术大学硕士生,主要研究方向为网络安全。|吴泉源(1942-),男,上海人,博士,国防科学技术大学教授,主要研究方向为人工智能与分布计算。|李爱平(1974-),男,山东诸城人,博士,国防科学技术大学研究员,主要研究方向为语义网络、数据挖掘和网络空间安全。|江荣(1984-),男,福建连城人,博士,国防科学技术大学助理研究员,主要研究方向为隐私保护和网络空间安全。
  • 基金资助:
    国家重点研发计划网络空间安全专项基金资助项目(2016YFB0800803);国家重点研发计划网络空间安全专项基金资助项目(2016YFB0800804);国家重点研发计划网络空间安全专项基金资助项目(2016YFB0800303)

Research on FAHP based Trojan attack effect evaluation

Chen-xi ZENG,Quan-yuan WU,Ai-ping LI,Rong JIANG()   

  1. School of Computer Science,National University of Defense Technology,Changsha 410073,China
  • Revised:2016-06-24 Online:2016-07-15 Published:2020-03-26
  • Supported by:
    The National Key Research and Development Program of China(2016YFB0800803);The National Key Research and Development Program of China(2016YFB0800804);The National Key Research and Development Program of China(2016YFB0800303)

摘要:

现有的网络攻击效果评估系统主要针对DDoS和蠕虫进行分析,缺乏对木马病毒的针对性。少数针对木马的危害度测量系统的指标值由人工标注,且都为定性值,稍欠客观性和全面性。基于该现状,从木马特性分析出发,建立针对木马病毒的层次化指标体系,设计指标值可定性也可定量,可人工标注也可系统采集。提出基于模糊层次分析的评估模型对木马攻击效果进行评估。同时,提出一种多对一的权重综合技术,对多组权重进行了合理的综合。最后,通过对比已有评估系统的评估结果,验证了所提评估技术的合理性。

关键词: 木马, 攻击效果评估, 模糊层次分析, 指标权重

Abstract:

The particular characters of Trojan are not fully taken into consideration by existed network attack effect evaluation systems which mainly focus on DDoS and Warm.A few Trojan harm measurement systems is somewhat short for objectivity and completeness as the result of that its indicator values is confined to manually marked and qualitative values.Under the circumstances,the analysis of Trojan's features were started from,and a hierarchical index system which accepted both quantitative and qualitative values,and both manually marked and system col-lected values was built.Then,a FAHP based evaluation model was proposed to evaluate the Trojan attack effect.Meanwhile,a many-to-one method to ensemble multiple weight vectors was proposed.Finally,the rationality of proposed evaluation system was verified by comparison with others.

Key words: Trojan, attack effect evaluation, fuzzy analytic hierarchy process, indicator weight

中图分类号: 

No Suggested Reading articles found!