• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2012, Vol. 34 ›› Issue (12): 51-55.

• 论文 • 上一篇    下一篇

基于模拟攻击的高校网络安全风险评估研究

史姣丽   

  1. (九江学院信息科学与技术学院,江西 九江 332005)
  • 收稿日期:2011-09-28 修回日期:2012-03-11 出版日期:2012-12-25 发布日期:2012-12-25

Research for the Risk Assessment of University Network Security Based on Simulated Attack

SHI Jiaoli   

  1. (College of Information Science and Technology,Jiujiang University,Jiujiang 332005,China)
  • Received:2011-09-28 Revised:2012-03-11 Online:2012-12-25 Published:2012-12-25

摘要:

针对高校网络目前存在的安全风险,提出一种新型的基于模拟攻击的高校网络安全风险评估模型。该模型综合考虑了单机脆弱性和网络攻击威胁,首先结合原有基于单机脆弱性测出的风险值,模拟攻击者利用网络弱点的入侵过程,产生攻击状态图;然后基于生成的攻击状态图和原有风险值,识别攻击者入侵网络所利用的攻击行为、可能路线及导致的安全状态变化,评估潜在威胁的位置;并对新方法的风险值给出了定量分析,从而为针对性地实施风险控制决策提供更准确的依据。实验结果表明,该模型是正确的,并且平均要比目前存在的风险评估模型多发现大约50%的安全风险。由此可以看出,本模型方法的评估结论较传统方法更为准确。

关键词: 高校网络安全, 模拟攻击, 风险评估

Abstract:

For the existing network security risks, this paper provides a novel network security risk assessment model based on simulated attack, which comprehensively considers the vulnerabilities of single computer and network attack menace. Firstly, the model uses the assessment value based on the vulnerabilities of single computer to simulate the intrusion process of attacker using the network weakness initially and produce the attack state chart. Secondly, the model identifies the attack behaviors, the possible attack line, the change of security state and the location of potential threat according to the attack state chart and the initial assessment value. Finally, the paper gives the quantitative analysis on the new assessment value by the new method, and provides a more accurate basis for the implement on risk control decision pointedly. The experimental results show that this model is correct, and can find out about more 50% security risk than the existing risk assessment models averagely. It means that the assessment results estimated by the model designed in this paper are more accurate than the traditional methods.

Key words: university network security;simulated attack;risk assessment