Dissertation > Excellent graduate degree dissertation topics show

The Analysis of Attack Graph Based on Bayesian Network

Author: LiuYanHui
Tutor: ChengHua
School: East China University of Science and Technology
Course: Applied Computer Technology
Keywords: Attack graph Bayesian network IDS CBF
CLC: TP393.08
Type: Master's thesis
Year: 2012
Downloads: 110
Quote: 0
Read: Download Dissertation

Abstract


With the increase of the network security threats, the behavior of which has showed the characteristic of complexity, diversity and uncertainty, etc. The original network security testing tools only detect the existence of security threats of single host, however, the vulnerability of the presence of multi-step, multi-host attack scene of the entire network must be taken into account. The method now is generally establishing attack graph about the given network configuration, which can be used to indicate an attacker trying to attack the network, from the initial state through a continuous series of attacks has made the access and used as a springboard to attack again, eventually reaching the target state. An attack graph contains a series of attack scene, with the increase of attack scenes, the security of the entire network will drop, so it is necessary for a quantitative analysis about a given network.Bayesian network is one of the most effective tools for the uncertainty knowledge representation and reasoning, in this paper, there is an overall security analysis use the attack graph based on the Bayesian network. At the same time common security vulnerability assessment system CVSS is used for a very strong evidence as the CBF to form a Bayesian network to further quantitative analysis of attack graph. The usage of IDS alerts as evidence of Bayesian network reference, so we can quickly and accurately find which path the attacker tried to attack and the ultimate goal of predicting attack.The main features of this article is the introduction of the Intrusion detection system, taking advantage of the network intrusion detection system for illegal intrusion in real-time alerts issue, based on the experiments of Bayesian inference, increasing evidence that the introduction of real-time, which make the network security status update has been greatly improved. At the same time the introduction of Bayesian network algorithm made the analysis of network security more convincing. Comparing with other methods, it can be more easily and quickly to help the network administrator to find the network security threats that exist for timely repair, thereby it can greatly enhancing security and stability of the network.

Related Dissertations

  1. Multi-Sensor Information Fusion and Its Applications on Wearable Computer,TP202
  2. Research of Acoustic Imaging System Based on the Spiral Array,TN641
  3. Action Research of the English Teacher’ Instructional Directive in the Primary School,G625.1
  4. Structure Learning of BN Using Improved Cloud Genetic Algorithm,TP18
  5. Research and Implementation of the Gene Bayesian Network Construction Algorithm Based on Multi-core Environment,Q75
  6. The Key Techniques of Attack Graph Generating for Large-scale Network,TP393.08
  7. Application of Support Vector Machine in the Intrusion Detection,TP393.08
  8. Intranet IPv6 Transition Network Integration Platform,TP393.04
  9. Research and Implement of Intrusion Detection System Based on P2P and Mobile Agent,TP393.08
  10. A Study on Firewall and IDS Linkage Algorithm,TP393.08
  11. Research on IDS Operations Security Measurement,TP393.08
  12. Research and Implementation on Method of Attack Signature Based IDS Testing Data Generating,TP393.08
  13. Transformation and Analysis of Temporal-spatial Expression of PtCBF Trifoliate Orange (Poncirus Trifoliata (L.) Raf.) and Ponkan (Citrus Teticulata Blanc),S666
  14. On Defense-in-Depth Strategy and Infrastructure Management of Campus Network,TP393.18
  15. Research and Implementation of Honeypot Based on Redirection Mechanism,TP393.08
  16. Research on Intrusion Control and Audit Expert System,TP393.08
  17. Intrusion Detection System (IDS): Simulation and Analysis of Denial of Service Attacks,TP393.08
  18. The Research of the BMHS2 Algorithm and Its Application in IDS,TP393.08
  19. China corporate information security program design,TP393.08
  20. Design and Implementation,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile