I-HMM-Based Multidimensional Network Security Risk Assessment

被引:9
|
作者
Hu, Jingjing [1 ]
Guo, Shuangshuang [1 ]
Kuang, Xiaohui [2 ]
Meng, Fankun [1 ]
Hu, Dongsheng [1 ]
Shi, Zhiyu [1 ]
机构
[1] Beijing Inst Technol, Sch Comp Sci & Technol, Beijing 100081, Peoples R China
[2] Natl Key Lab Sci & Technol Informat Syst Secur, Beijing 100101, Peoples R China
基金
中国国家自然科学基金;
关键词
Hidden Markov model; network node correlation; network security risk; risk assessment; KEY MANAGEMENT SCHEME; COVERT CHANNEL; AGREEMENT; ENSEMBLE; MODEL;
D O I
10.1109/ACCESS.2019.2961997
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems (CPS) are vulnerable to network attacks because communication relies on the network that links the various components in the CPS. The importance of network security is self-evident. In this study, we conduct a network security risk assessment from the perspectives of the host and the network, and we propose a new framework for a multidimensional network security risk assessment that includes two stages, i.e., risk identification and risk calculation. For the risk identification stage, we propose a multidimensional hierarchical index system for assessing cybersecurity risk; the system's security status is determined in three dimensions, i.e., basic operation, vulnerabilities, and threats, and these dimensions guide the data collection. In the risk calculation stage, we use a hidden Markov model (HMM) to assess the network security risk. We provide a new definition of the quality of alert and optimize the observation sequence of the HMM. The model uses a learning algorithm instead of setting the parameters manually. We introduce the concept of network node association to increase the reliability and accuracy of the risk assessment. The simulation results show that the proposed index system provides quantitative data that reflect the security status of the network. The proposed network security risk assessment method based on the improved HMM (I-HMM) reflects the security risk status in a timely and intuitive manner and detects the degree of risk that different hosts pose to the network.
引用
收藏
页码:1431 / 1442
页数:12
相关论文
共 50 条
  • [1] Network Security Situation Assessment Based on HMM
    Zhang, Boyun
    Chen, Zhigang
    Wang, Shulin
    Yan, Xiai
    Zhang, Dingxing
    Fan, Qiang
    [J]. ADVANCED INTELLIGENT COMPUTING THEORIES AND APPLICATIONS: WITH ASPECTS OF ARTIFICIAL INTELLIGENCE, 2012, 6839 : 387 - +
  • [2] Network Security Risk Assessment Method Based on HMM and Attack Graph Model
    Liu Si-chao
    Liu Yuan
    [J]. 2016 17TH IEEE/ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING AND PARALLEL/DISTRIBUTED COMPUTING (SNPD), 2016, : 517 - 522
  • [3] Network security assessment based on node correlated HMM
    Long, Men
    Xia, Jing-Bo
    Zhang, Zi-Yang
    Guo, Rong-Xiao
    [J]. Beijing Youdian Daxue Xuebao/Journal of Beijing University of Posts and Telecommunications, 2010, 33 (06): : 121 - 124
  • [4] Network Security Situation Assessment Based on HMM-MPGA
    Li, Xiaoyan
    Zhao, Huan
    [J]. PROCEEDINGS OF 2016 2ND INTERNATIONAL CONFERENCE ON INFORMATION MANAGEMENT (ICIM2016), 2016,
  • [5] Network Risk Assessment Based on Baum Welch Algorithm and HMM
    Chundong Wang
    Kongbo Li
    Xiaonan He
    [J]. Mobile Networks and Applications, 2021, 26 : 1630 - 1637
  • [6] Network Risk Assessment Based on Baum Welch Algorithm and HMM
    Wang, Chundong
    Li, Kongbo
    He, Xiaonan
    [J]. MOBILE NETWORKS & APPLICATIONS, 2021, 26 (04): : 1630 - 1637
  • [7] Research on Key Technologies of Network Security Multidimensional Dynamic Risk Assessment
    Jiang Ming
    Li Ming
    Cai Mengchen
    Fang Yuan
    [J]. 2018 7TH INTERNATIONAL CONFERENCE ON ADVANCED MATERIALS AND COMPUTER SCIENCE (ICAMCS 2018), 2019, : 389 - 393
  • [8] Network Security Risk Assessment Based on Node Correlation
    Wang, Zengguang
    Lu, Yu
    Li, Jindong
    [J]. 3RD ANNUAL INTERNATIONAL CONFERENCE ON INFORMATION SYSTEM AND ARTIFICIAL INTELLIGENCE (ISAI2018), 2018, 1069
  • [9] Network Security Risk Assessment Based on Association Rules
    Cheng, Xiaorong
    Wei, Yan
    Geng, Xin
    [J]. ICCSSE 2009: PROCEEDINGS OF 2009 4TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE & EDUCATION, 2009, : 1142 - 1145
  • [10] Network Security Risk Assessment Based on Attack Graph
    Xie, Lixia
    Zhang, Xiao
    Zhang, Jiyong
    [J]. JOURNAL OF COMPUTERS, 2013, 8 (09) : 2339 - 2347