作者
Igor Kotenko, Andrey Chechulin
发表日期
2012/12
期刊
International Transactions on Systems Science and Applications
卷号
8
页码范围
129-147
简介
The paper suggests a framework for attack modeling and security evaluation in Security Information and Event Management (SIEM) systems applicable for future systems of the Internet of Things. It is supposed that the common approach to attack modeling and security evaluation is based on modeling of a malefactor’s behavior, generating a common attack graph, calculating different security metrics and providing risk analysis procedures. Key elements of suggested architectural solutions for attack modeling and security evaluation are using a comprehensive security repository, effective attack graph (tree) generation techniques, taking into account known and new attacks based on zero-day vulnerabilities, stochastic analytical modeling, and interactive decision support to choose preferred security solutions. The architecture of the Attack Modeling and Security Evaluation Component (AMSEC) is proposed, its …
引用总数
2012201320142015201620172018201920202021202220232024110131051616645543
学术搜索中的文章
I Kotenko, A Chechulin - International Transactions on Systems Science and …, 2012