Network Security Analysis Based on Security Status Space

Tao Zhang,Chong Wu
DOI: https://doi.org/10.1109/waim.2008.68
2008-01-01
Abstract:As an important method to analyze the security status of computer network, generating of network attack graph is a hot topic in this domain. After analyzing network security attributes including the host, user privilege, connection relation, etc., the model of computer network security status space is built. The node of attack graph expresses the network security status, and the directed-line expresses the attack rule. We use a forward-search, breadth-first and depth-limited algorithm to produce attack route, and utilize the tools Graphviz to generate the attack graph. The experiment validates the prototype of network attack graph automatic generating tools based on security status space.
What problem does this paper attempt to address?