Journal on Communications ›› 2023, Vol. 44 ›› Issue (2): 122-135.doi: 10.11959/j.issn.1000-436x.2023002

• Papers • Previous Articles     Next Articles

Research on network attack analysis method based on attack graph of absorbing Markov chain

Haiyan KANG, Molan LONG   

  1. School of Information Management, Beijing Information Science and Technology University, Beijing 100192, China
  • Revised:2022-10-29 Online:2023-02-25 Published:2023-02-01
  • Supported by:
    The National Social Science Foundation of China(21BTQ079);The Humanities and Social Sciences Research Project of the Ministry of Education(20YJAZH046);Advanced Innovation Center for Future Blockchain and Privacy Computing Fund

Abstract:

Existing intrusion path studies based on attack graph lack consideration of factors other than basic network environment information when calculating the state transition probability.In order to analyze the security of target network comprehensively and reasonably, a network attack analysis method based on attack graph of absorbing Markov chain was proposed.Firstly, a state transition probability normalization algorithm based on vulnerability life cycle was proposed based on attack graph.Secondly, the attack graph was mapped to the absorbing Markov chain and the state transition probability matrix was given.Finally, the state transition probability matrix was calculated to comprehensively analyze the node threat degree, attack path length and expected impact of the target network.The results show that the proposed method can effectively analyze the expected influence of node threat degree, attack path length and vulnerability life cycle on the whole network, which is helpful for security research personnel to better understand the security state of the network.

Key words: attack graph, absorbing Markov chain, vulnerability life cycle, network attack, network security analysis

CLC Number: 

No Suggested Reading articles found!