A new method of dynamic network security analysis based on dynamic uncertain causality graph

被引:0
|
作者
Dong, Chunling [1 ]
Feng, Yu [1 ]
Shang, Wenqian [1 ]
机构
[1] Commun Univ China, Sch Comp & Cyber Sci, Beijing 100024, Peoples R China
基金
中国国家自然科学基金;
关键词
Dynamic uncertain causality graph; Attack graph; Network attack; Attack scenario construction; CLOUD;
D O I
10.1186/s13677-023-00568-7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the context of cloud computing, network attackers usually exhibit complex, dynamic, and diverse behavior characteristics. Existing research methods, such as Bayesian attack graphs, lack evidence correlation and real-time reflection of the network attack events, and high computational complexity for attack analysis. To solve these problems, this study proposes a Dynamic Uncertain Causal Attack Graph (DUCAG) model and a Causal Chain-based Risk Probability Calculation (CCRP) algorithm. The DUCAG model is constructed to represent the uncertain underlying causalities among network attack events, and the CCRP algorithm aims at dynamically updating the causality weights among different network attack events and attacker hypotheses based on alarm information and causal chain reasoning process. By causality simplification and causality reasoning methods, the CCRP efficiently predicts the attacker behaviors and potential attack likelihood under uncertain time-varying attack situations, and is robust to the incompleteness and redundancy in alarm information. Four experiments under different attack scenarios demonstrate that, the DUCAG model can effectively characterize and predict the complex and uncertain attack causalities, in a manner of high time efficiency. The proposed method has application significance on cloud computing platforms by dynamically evaluating network security status, predicting the future behaviors of attackers, and assisting in adjusting network defense strategies.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] A new method of dynamic network security analysis based on dynamic uncertain causality graph
    Chunling Dong
    Yu Feng
    Wenqian Shang
    [J]. Journal of Cloud Computing, 13
  • [2] DYNAMIC FAULT TREE ANALYSIS BASED ON DYNAMIC UNCERTAIN CAUSALITY GRAPH
    Zhou, Zhenxu
    Dong, Chunling
    Zhang, Qin
    [J]. PROCEEDINGS OF THE 26TH INTERNATIONAL CONFERENCE ON NUCLEAR ENGINEERING, 2018, VOL 2, 2018,
  • [3] FAULT TREE ANALYSIS BASED ON DYNAMIC UNCERTAIN CAUSALITY GRAPH
    Zhou, Zhenxu
    Zhang, Qin
    [J]. PROCEEDINGS OF THE 25TH INTERNATIONAL CONFERENCE ON NUCLEAR ENGINEERING, 2017, VOL 4, 2017,
  • [4] Reliability analysis of dynamic reliability block diagram based on dynamic uncertain causality graph
    Jia, Lulu
    Ren, Yi
    Yang, Dezhen
    Feng, Qiang
    Sun, Bo
    Qian, Cheng
    [J]. JOURNAL OF LOSS PREVENTION IN THE PROCESS INDUSTRIES, 2019, 62
  • [5] A New Inference Algorithm of Dynamic Uncertain Causality Graph Based on Conditional Sampling Method for Complex Cases
    Nie, Hao
    Zhang, Qin
    [J]. IEEE ACCESS, 2021, 9 : 94523 - 94536
  • [6] STOCHASTIC SIMULATION METHOD FOR REASONING OF DYNAMIC UNCERTAIN CAUSALITY GRAPH (DUCG)
    Nie, Hao
    Zhang, Qin
    [J]. PROCEEDINGS OF THE 2020 INTERNATIONAL CONFERENCE ON NUCLEAR ENGINEERING (ICONE2020), VOL 3, 2020,
  • [7] Differential disease diagnoses of epistaxis based on dynamic uncertain causality graph
    Bu, Xusong
    Zhang, Mingxia
    Zhang, Zhan
    Zhang, Qin
    [J]. EUROPEAN ARCHIVES OF OTO-RHINO-LARYNGOLOGY, 2023, 280 (04) : 1731 - 1740
  • [8] A General Outpatient Triage System Based on Dynamic Uncertain Causality Graph
    Bu, Xusong
    Lu, Lin
    Zhang, Zhan
    Zhang, Qin
    Zhu, Yan
    [J]. IEEE ACCESS, 2020, 8 : 93249 - 93263
  • [9] A general outpatient triage system based on dynamic uncertain causality graph
    Bu, Xusong
    Lu, Lin
    Zhang, Zhan
    Zhang, Qin
    Zhu, Yan
    [J]. IEEE Access, 2020, 8 : 93249 - 93263
  • [10] Clinical Diagnosis Expert System Based on Dynamic Uncertain Causality Graph
    Geng, Shichao
    Zhang, Qin
    [J]. 2014 IEEE 7TH JOINT INTERNATIONAL INFORMATION TECHNOLOGY AND ARTIFICIAL INTELLIGENCE CONFERENCE (ITAIC), 2014, : 233 - 237