Network Security Situation Assessment Based on Attack Graph Techniques

Jinwei Yang,Yu Yang,Lu Zheng,Ruixia Cheng,Shengnan Lin
DOI: https://doi.org/10.1088/1742-6596/2310/1/012071
2022-10-11
Journal of Physics: Conference Series
Abstract:Network security situation awareness (NSSA) can analyze current network status and predict trends. Intrusion detection systems are used as sources of security factor in situational awareness, and their accuracy affects the assessment of network security. The attack graph can filter out key nodes and enumerate possible attack paths, which has become the main method of risk assessment. Therefore, a network security situation assessment technology based on intrusion detection was proposed. The detection rate of the intrusion detection system was improved firstly, and then the attack graph was combined with the hidden Markov model (HMM) for network security assessment. The experimental results show that this method can effectively speculate the attack intention and reflect the results intuitively and roundly.
What problem does this paper attempt to address?