Interactive analysis of attack graphs using relational queries

被引:0
|
作者
Wang, Lingyu [1 ]
Yao, Chao
Singhal, Anoop
Jajodia, Sushil
机构
[1] George Mason Univ, Ctr Secure Informat Syst, Fairfax, VA 22030 USA
[2] NIST, Comp Secur Div, Gaithersburg, MD 20899 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Attack graph is important in defending against well-orchestrated network intrusions. However, the current analysis of attack graphs requires an algorithm to be developed and implemented, causing a delay in the availability of analysis. Such a delay is usually unacceptable because the needs for analyzing attack graphs may change rapidly in defending against network intrusions. An administrator may want to revise an analysis upon observing its outcome. Such an interactive analysis, similar to that in decision support systems, is difficult if at all possible with current approaches based on proprietary algorithms. This paper removes the above limitation and enables interactive analysis of attack graphs. We devise a relational model for representing necessary inputs including network configuration and domain knowledge. We generate the attack graph from those inputs as relational views. We then show that typical analyses of the attack graph can be realized as relational queries against the views. Our approach eliminates the needs for developing a proprietary algorithm for each different analysis, because an analysis is now simply a relational query. The interactive analysis of attack graphs is now possible, because relational queries can be dynamically constructed and revised at run time. Moreover, the mature optimization techniques in relational databases can also improve the performance of the analysis.
引用
收藏
页码:119 / 132
页数:14
相关论文
共 50 条
  • [1] Implementing interactive analysis of attack graphs using relational databases
    Wang, Lingyu
    Yao, Chao
    Singhal, Anoop
    Jajodia, Sushil
    [J]. JOURNAL OF COMPUTER SECURITY, 2008, 16 (04) : 419 - 437
  • [2] Interactive visual queries for multivariate graphs exploration
    Shamir, Ariel
    Stolpnik, Alla
    [J]. COMPUTERS & GRAPHICS-UK, 2012, 36 (04): : 257 - 264
  • [3] Interactive image segmentation by matching attributed relational graphs
    Noma, Alexandre
    Graciano, Ana B. V.
    Cesar, Roberto M., Jr.
    Consularo, Luis A.
    Bloch, Isabelle
    [J]. PATTERN RECOGNITION, 2012, 45 (03) : 1159 - 1179
  • [4] Approximate and Interactive Processing of Aggregate Queries on Knowledge Graphs: A Demonstration
    Wang, Yuxiang
    Khan, Arijit
    Xu, Xiaoliang
    Ye, Shuzhan
    Pan, Shihuang
    Zhou, Yuhan
    [J]. PROCEEDINGS OF THE 31ST ACM INTERNATIONAL CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, CIKM 2022, 2022, : 5034 - 5038
  • [5] Improving the adversarial transferability with relational graphs ensemble adversarial attack
    Pi, Jiatian
    Luo, Chaoyang
    Xia, Fen
    Jiang, Ning
    Wu, Haiying
    Wu, Zhiyou
    [J]. FRONTIERS IN NEUROSCIENCE, 2023, 16
  • [6] Evaluation of SPARQL queries using relational databases
    Dokulil, Jiri
    [J]. SEMANTIC WEB - ISEC 2006, PROCEEDINGS, 2006, 4273 : 972 - 973
  • [7] Recursive Queries Using Object Relational Mapping
    Burzanska, Marta
    Stencel, Krzysztof
    Suchomska, Patrycja
    Szumowska, Aneta
    Wisniewski, Piotr
    [J]. FUTURE GENERATION INFORMATION TECHNOLOGY, 2010, 6485 : 42 - 50
  • [8] Using relational graphs for exploratory analysis of network traffic data
    Cermak, Milan
    Fritzova, Tatiana
    Rusnak, Vit
    Sramkova, Denisa
    [J]. FORENSIC SCIENCE INTERNATIONAL-DIGITAL INVESTIGATION, 2023, 45
  • [9] Attack Time Localization using Interval Queries
    Ivkin, Nikita
    Ben Basat, Ran
    Liu, Zaoxing
    Einziger, Gil
    Friedman, Roy
    Braverman, Vladimir
    [J]. PROCEEDINGS OF THE 2019 ACM SIGCOMM CONFERENCE POSTERS AND DEMOS (SIGCOMM '19), 2019, : 85 - 87
  • [10] Generation and Analysis of Attack Graphs
    Wang, Chunying
    Du, Ning
    Yang, Huijing
    [J]. 2012 INTERNATIONAL WORKSHOP ON INFORMATION AND ELECTRONICS ENGINEERING, 2012, 29 : 4053 - 4057