Skip to main navigation Skip to search Skip to main content

An improved algorithm for generation of attack graph based on virtual performance node

  • Yihuan Zhao*
  • , Zulin Wang
  • , Xudong Zhang
  • , Jing Zheng
  • *Corresponding author for this work
  • Beihang University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

A variety of graph-based algorithms have been proposed to generate attack graph automatically, few of which take network performance into consideration and satisfy the purpose of network vulnerability analysis. In this paper, Virtual Performance Node (VPN) is defined and an improved graph-based algorithm is proposed. The performance decrease due to attacker's incursion in the whole network is regarded as the attacker's expectation and VPNs are chosen as the net status. This method makes attack graph have an extra ability to measure the attack effect with network performance loss. The algorithm is compared with other methods in the analysis of an experimental network. The results show that the improved attack graph has the least status and acts well with human cognitive habits, which makes it more useful to analyze network vulnerability.

Original languageEnglish
Title of host publication1st International Conference on Multimedia Information Networking and Security, MINES 2009
Pages466-469
Number of pages4
DOIs
StatePublished - 2009
Event1st International Conference on Multimedia Information Networking and Security, MINES 2009 - Hubei, China
Duration: 17 Nov 200920 Nov 2009

Publication series

Name1st International Conference on Multimedia Information Networking and Security, MINES 2009
Volume2

Conference

Conference1st International Conference on Multimedia Information Networking and Security, MINES 2009
Country/TerritoryChina
CityHubei
Period17/11/0920/11/09

Keywords

  • Attack effect
  • Attack graph
  • Network performance
  • Network security
  • Vulnerability analysis

Fingerprint

Dive into the research topics of 'An improved algorithm for generation of attack graph based on virtual performance node'. Together they form a unique fingerprint.

Cite this