Journal on Communications ›› 2020, Vol. 41 ›› Issue (9): 160-169.doi: 10.11959/j.issn.1000-436x.2020172

• Papers • Previous Articles     Next Articles

Network intrusion intention analysis model based on Bayesian attack graph

Zhiyong LUO,Xu YANG,Jiahui LIU,Rui XU   

  1. School of Computer Science and Technology,Harbin University of Science and Technology,Harbin 150080,China
  • Revised:2020-07-19 Online:2020-09-25 Published:2020-10-12
  • Supported by:
    The National Natural Science Foundation of China(61403109)

Abstract:

Aiming at the problem of ignoring the impact of attack cost and intrusion intention on network security in the current network risk assessment model,in order to accurately assess the target network risk,a method of network intrusion intention analysis based on Bayesian attack graph was proposed.Based on the atomic attack probability calculated by vulnerability value,attack cost and attack benefit,the static risk assessment model was established in combination with the quantitative attack graph of Bayesian belief network,and the dynamic update model of intrusion intention was used to realize the dynamic assessment of network risk,which provided the basis for the dynamic defense measures of attack surface.Experiments show that the model is not only effective in evaluating the overall security of the network,but also feasible in predicting attack paths.

Key words: Bayesian belief network, attack graph, network security, intrusion intention, risk assessment

CLC Number: 

No Suggested Reading articles found!