K Maximum Probability Attack Paths Dynamic Generation Algorithm
Computer Science and Information Systems, Tome 13 (2016) no. 2.

Voir la notice de l'article provenant de la source Computer Science and Information Systems website

An attack graph depicts multiple-step attack and provides a description of system security vulnerabilities. It illustrates critical information necessary to identify potential weaknesses and areas for enhanced defense. Attack graphs include multiple attack paths, which are a focus for further detailed analysis and risk mitigation. Considering that different vulnerabilities have different probabilities of being exploited, this paper proposes an algorithm to dynamically generate the top K attack paths with maximum probabilities for every node of a system. The proposed algorithm does not require generation of the full attack graph to calculate the K attack paths. Instead, it directly processes and analyzes the system input data and dynamically identifies the K attack paths. The computational time, based upon the complexity of the attack paths, can be constrained by the parameter K. Experimental results show that the algorithm is scalable and efficient.
Keywords: attack path, attack graph, K shortest paths, system security, network security
@article{CSIS_2016_13_2_a21,
     author = {Kun Bi and Dezhi Han and Jun Wang},
     title = {K {Maximum} {Probability} {Attack} {Paths} {Dynamic} {Generation} {Algorithm}},
     journal = {Computer Science and Information Systems},
     publisher = {mathdoc},
     volume = {13},
     number = {2},
     year = {2016},
     url = {http://geodesic.mathdoc.fr/item/CSIS_2016_13_2_a21/}
}
TY  - JOUR
AU  - Kun Bi
AU  - Dezhi Han
AU  - Jun Wang
TI  - K Maximum Probability Attack Paths Dynamic Generation Algorithm
JO  - Computer Science and Information Systems
PY  - 2016
VL  - 13
IS  - 2
PB  - mathdoc
UR  - http://geodesic.mathdoc.fr/item/CSIS_2016_13_2_a21/
ID  - CSIS_2016_13_2_a21
ER  - 
%0 Journal Article
%A Kun Bi
%A Dezhi Han
%A Jun Wang
%T K Maximum Probability Attack Paths Dynamic Generation Algorithm
%J Computer Science and Information Systems
%D 2016
%V 13
%N 2
%I mathdoc
%U http://geodesic.mathdoc.fr/item/CSIS_2016_13_2_a21/
%F CSIS_2016_13_2_a21
Kun Bi; Dezhi Han; Jun Wang. K Maximum Probability Attack Paths Dynamic Generation Algorithm. Computer Science and Information Systems, Tome 13 (2016) no. 2. http://geodesic.mathdoc.fr/item/CSIS_2016_13_2_a21/