• DocumentCode
    1753052
  • Title

    A Novel Approach to Cyberspace Security Situation Based on the Vulnerabilities Analysis

  • Author

    Hu, Wei ; Li, Jianhua ; Shi, Jianjun

  • Author_Institution
    Dept. of Electron. Eng., ShangHai JiaoTong Univ.
  • Volume
    1
  • fYear
    0
  • fDate
    0-0 0
  • Firstpage
    4747
  • Lastpage
    4751
  • Abstract
    Present-day network security management service is unable to provide useful security situation or risk estimation for administrators, or to help administrators to make right and timely decisions based on current state of the network security. These disadvantages lead to risks which exist in network security management applications and accordingly cause a loss. In this paper, we make use of the HoneyNet dataset and adopt statistic analysis to find the vulnerabilities of the services which the hosts provide in the network system. According to the network topology, the host layout and the relations among services, the paper presents a novel time-divided and hierarchical approach to achieve the current situation of network security. The approach can be applied to modeling security situation and achieve the expressions of the security situation of the network system. Coupled with the statistical data, the paper shows the simulation curves of the security situation in different periods through a great deal of calculation. The analysis of the simulation result proves the algorithm efficient and provides us for our future implementation with the academic foundation of the evaluation of the security situation
  • Keywords
    computer network management; program diagnostics; security of data; telecommunication network topology; telecommunication security; HoneyNet dataset; adopt statistic analysis; cyberspace security; hierarchical approach; host layout; network security management service; network topology; risk estimation; security situation modeling; time-divided approach; vulnerability analysis; Algorithm design and analysis; Computer security; Data security; Engineering management; Information security; Network topology; Risk analysis; Risk management; State estimation; Statistical analysis; Security Management; Security Situation; Security Vulnerabilities; Situational Awareness;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Intelligent Control and Automation, 2006. WCICA 2006. The Sixth World Congress on
  • Conference_Location
    Dalian
  • Print_ISBN
    1-4244-0332-4
  • Type

    conf

  • DOI
    10.1109/WCICA.2006.1713284
  • Filename
    1713284