Attack Model and Its Application Based on System States Aggregation

LAI Hai-Guang,HUANG Hao,XIE Jun-yuan
2005-01-01
Abstract:In order to evaluate a system's security and predict the attack actions, an attack model based on system states' aggregation was presented. In the model, the threat was Abstracted as the aggregation of the system's states, and the attack process was depicted as the change of the system states' aggregation. A method of detecting network attacks and early warning using the model was also described. Based on the model, an early warning prototype was implemented. Our experiment shows that the prototype is able to detect attack processes effectively and predict the possible risk level the system will reach.
What problem does this paper attempt to address?