The Research on Real-time Security Situation Assessment Technology Based on the Threat Propagation Model.

Jian Chen,Mingyuan Yang
DOI: https://doi.org/10.1145/3523181.3523192
2022-01-01
Abstract:Network security situation assessment is a research hotspot in the field of information security, which is strong in real-time performance. However, most of the current real-time situation assessment technologies are very complicated and do poorly in real-time performance. Hence, this paper puts forward a real-time situation assessment method based on the threat propagation model. This method establishes a threat propagation model of real-time situation assessment, in order to calculate the threat degree of threat propagation source to target network, and to evaluate the real-time situation assessment from two layers which includes the network node layer and the whole network layer. The results of simulation experiment show that the method proposed in this paper can evaluate the potential threats according to the current attack scenarios, and can achieve a real-time assessment on the attacks in the network since the situation of real-time network attacks change obviously. In short, the effectiveness, accuracy and real-time performance of the proposed method are verified by comparative experiments.
What problem does this paper attempt to address?