A Threat Prediction Framework for Network Security Based on Attack Patterns and Colored Petri Nets

被引:0
|
作者
Chien, Sheng-Hui [1 ]
Ho, Cheng-Seen [2 ]
机构
[1] Natl Taiwan Univ Sci & Technol, Dept Elect Engn, Taipei, Taiwan
[2] Tuangnan Univ, Dept Informat Technol & Commun, Taipei, Taiwan
关键词
Attack pattern; network security situation awareness; situation assessment; threat prediction; colored Petri Net;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
It is hard to comprehend intrusion alerts because many attacks are multistage and even coordinated by multiple attackers. This paper introduces a threat prediction framework to tackle the problem. The framework adopts attack patterns to facilitate the reuse of network security knowledge. The instantiation of relevant attack patterns becomes a network specific attack plan. We developed a colored Petri Net, CPNap, to represent the attack plan, which can clearly reveal the attack steps and security states. A CPNap is then tokenized to represent an actual attack. Based on the token arrival probability of a tokenized CPNap, we finally can conduct situation assessment and threat prediction. Our experiments show the framework can effectively predict security threats of multistage attacks and identify cooperating attackers. With this, network defenders may have a better chance to take mitigation actions before the attackers fulfill their malicious intentions.
引用
收藏
页码:492 / 496
页数:5
相关论文
共 50 条
  • [21] An Attack Modeling Based on Colored Petri Net
    周世杰
    秦志光
    张峰
    刘锦德
    [J]. Journal of Electronic Science and Technology, 2004, (01) : 47 - 52
  • [22] Colored Petri Net based attack modeling
    Zhou, SJ
    Qin, ZQ
    Zhang, F
    Zhang, XF
    Chen, W
    Liu, J
    [J]. ROUGH SETS, FUZZY SETS, DATA MINING, AND GRANULAR COMPUTING, 2003, 2639 : 715 - 718
  • [23] Inconsistent State Analysis of a Network Receiver with Colored Petri Nets
    Bouali, Mohamed
    Barger, Pavol
    Schon, Walter
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON DEPENDABILITY OF COMPUTER SYSTEMS, 2009, : 152 - 159
  • [24] A method of workflow scheduling based on colored Petri nets
    Xiao, Zhijiao
    Ming, Zhong
    [J]. DATA & KNOWLEDGE ENGINEERING, 2011, 70 (02) : 230 - 247
  • [25] Hierarchical control of DES based on colored Petri nets
    Wu, WM
    Su, HY
    Chu, J
    Zhai, HF
    [J]. 2001 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS, VOLS 1-5: E-SYSTEMS AND E-MAN FOR CYBERNETICS IN CYBERSPACE, 2002, : 1571 - 1576
  • [26] Modeling of Collaborative Design Based on Colored Petri Nets
    Hou Junming
    Chong, Su
    Liang, Tang
    Wang Wanshan
    [J]. PROCEEDINGS OF THE 27TH CHINESE CONTROL CONFERENCE, VOL 6, 2008, : 428 - 432
  • [27] A Risk Assessment Framework for Hazmat Transportation in Highways by Colored Petri Nets
    Fanti, Maria Pia
    Iacobellis, Giorgio
    Ukovich, Walter
    [J]. IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2015, 45 (03): : 485 - 495
  • [28] Transforming Business Patterns to Colored Petri Nets using Graph Grammars
    Mahdi, Karima
    Elmansouri, Raida
    Chaoui, Allaoua
    [J]. 2012 22ND INTERNATIONAL CONFERENCE ON COMPUTER THEORY AND APPLICATIONS (ICCTA), 2012, : 72 - 78
  • [29] Risk Management for Construction Projects with Colored Petri Nets: an Agent-Based Modeling Framework
    Zhang, Y. B.
    Chen, Y. Q.
    Zhu, X. Y.
    [J]. 2012 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT (IEEM), 2012, : 2008 - 2012
  • [30] Modeling and security analysis of enterprise network using attack-defense stochastic game Petri nets
    Wang, Yuanzhuo
    Li, Jingyuan
    Meng, Kun
    Lin, Chuang
    Cheng, Xueqi
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2013, 6 (01) : 89 - 99