Application of Network Attack Graph in Automated Penetration Test

陈国栋,杨光临,段晓辉
DOI: https://doi.org/10.3969/j.issn.1000-3428.2008.13.042
2008-01-01
Abstract:This paper presents a new approach to automatic construction and optimization of the Network Attack Graph(NAG). For solving scalability problem of the NAG, a hierarchy has been adapted for the network structure that can be divided into attack subgraph and attack supergraph. The attack subgraph describes concrete attack scenarios from the source host to the destination host. The attack supergraph described the attacker’s privilege transition processing. This approach reduces the complexity of NAG by simplifying the structure of it.
What problem does this paper attempt to address?