YAN Feng, LIU Shu-fen, LENG Huang. Study on Analysis of Attack Graphs Based on Conversion[J]. Acta Electronica Sinica, 2014, 42(12): 2477-2480.
DOI:
YAN Feng, LIU Shu-fen, LENG Huang. Study on Analysis of Attack Graphs Based on Conversion[J]. Acta Electronica Sinica, 2014, 42(12): 2477-2480. DOI: 10.3969/j.issn.0372-2112.2014.12.20.
Study on Analysis of Attack Graphs Based on Conversion
Attack graph analysis is an effective tool for analyzing network vulnerability
representing the process that attackers penetrate networks using the complex interdependence between vulnerabilities and network configurations.In this paper
we prove the equivalence of the optimization security measure problem and the weighted hitting set problem
and present the method which converts the optimization security measure problem to the weighted hitting set problem on the premise of not increasing the problem scale.Theoretical analysis and experiments show that the method based on conversion has better performance than the method based on critical attack sets in converging to the global optimal solution.