学位论文详细信息
An approach to incorporating uncertainty in network security analysis
network security, uncertainty, attach graph, reachability
Nguyen, Hoang Hai ; Nicol ; David M.
关键词: network security, uncertainty, attach graph, reachability;   
Others  :  https://www.ideals.illinois.edu/bitstream/handle/2142/102416/NGUYEN-THESIS-2018.pdf?sequence=1&isAllowed=y
美国|英语
来源: The Illinois Digital Environment for Access to Learning and Scholarship
PDF
【 摘 要 】

Attack graphs used in network security analysis are analyzed to determine sequences of exploits that lead to successful acquisition of privileges or data at critical assets. An attack graph edge corresponds to a vulnerability, tacitly assuming a connection exists and tacitly assuming the vulnerability is known to exist.In this thesis, we explore use of {\em uncertain graphs} to extend the paradigm to include lack of certainty in connection and/or existence of a vulnerability. We extend the standard notion of uncertain graph (where the existence of each edge is probabilistically independent) however, as significant correlations on edge existence probabilities exist in practice, owing to common underlying causes for disconnectivity and/or presence of vulnerabilities. Our extension describes each edge probability as a Boolean expression of independent indicator random variables. This thesis (i) shows that this formalism is maximally descriptive in the sense that it can describe any joint probability distribution function of edge existence, (ii) shows that when these Boolean expressions are monotone then we can easily perform uncertainty analysis of edge probabilities, and (iii) uses these results to model a partial attack graph of the Stuxnet worm and a small enterprise network and to answer important security-related questions in a probabilistic manner.

【 预 览 】
附件列表
Files Size Format View
An approach to incorporating uncertainty in network security analysis 994KB PDF download
  文献评价指标  
  下载次数:5次 浏览次数:5次