Attack Dynamics: An Automatic Attack Graph Generation Framework Based on System Topology, CAPEC, CWE, and CVE Databases

Attack Dynamics: An Automatic Attack Graph Generation Framework Based on System Topology, CAPEC, CWE, and CVE Databases
复制标题

攻击动力学:基于系统拓扑、CAPEC、CWE和CVE数据库的自动攻击图生成框架

DOI:
10.1016/j.cose.2022.102938
复制
发表时间:
2022
影响因子:
5.6
通讯作者:
..zdemir S..nmez F
..zdemir S..nmez F
中科院分区:
计算机科学3区
文献类型:
--
作者:
..zdemir S..nmez F

文献摘要

参考文献

被引文献

相似文献

通过基于元数据的内置安全分析功能,本文提供了一个新颖的框架,该框架从场景输入开始,并基于常见攻击模式枚举和分类(CAPEC)和常见弱点枚举(CWE)标准生成一系列可视化。它立即将MITRE ATT&CK框架的企业缓解措施与它发现的安全漏洞联系起来。它还集成了一个第三方优化工具,旨在降低企业的安全成本,它可以实时或稍后使用首选格式的JSON输出执行,具体取决于执行模式。所有这些步骤都在没有人为干预的情况下进行。具有用于捕获不同种类的已知或预期攻击类型的各种规则的自适应元数据允许生成攻击图。它可以作为一种快速实用的假设分析工具,用于检测各种网络配置设置和分配的访问权限的潜在入侵。作为一个威胁建模器,它适合新手和专家用户。由于简单的输入方案和人类可读的输出,它也可以用作教育工具。
Through a built-in security analysis feature based on metadata, this article provides a novel framework that starts with a scenario input and produces a collection of visualizations based on Common Attack Pattern Enumeration and Classification (CAPEC) and Common Weakness Enumeration (CWE) Standards. It immediately links enterprise mitigations from MITRE ATT&CK framework to the security flaws it discovered. It’s also integrated with a third-party optimization tool targeted at cutting security costs for businesses, which it can perform in real-time or later using JSON output in the preferred format, depending on the execution mode. All of these stages are conducted without human intervention. Adaptive metadata with a variety of rules for capturing different sorts of known or prospective attack types allows for the production of attack graphs. It can be used as a quick and practical what-if analysis tool to detect potential intrusions for a variety of network configuration setups and assigned access privileges. As a threat modeler, it is suitable for both novice and expert users. Due to the easy input scheme and human-readable outputs, it can also be utilized as an educational tool.
A2G2V:自动攻击图生成器和可视化工具
DOI: --
发表时间: 2018
期刊: Proceedings of the 1st ACM MobiHoc Workshop on Mobile IoT Sensing, Security, and Privacy
影响因子: --
作者:
Alaa T. Al Ghazo;M. Ibrahim;Hao Ren;Ratnesh Kumar
通讯作者: Ratnesh Kumar
DOI: 10.1016/j.ejor.2019.04.035
发表时间: 2019-11
期刊: Eur. J. Oper. Res.
影响因子: --
作者:
M. Khouzani;Zheng-Long Liu;P. Malacaria
通讯作者: M. Khouzani;Zheng-Long Liu;P. Malacaria
ADTool:利用攻击防御树进行安全分析
DOI: 10.1007/978-3-642-40196-1_15
发表时间: 2013
影响因子: 6.1
作者:
Barbara Kordy;P. Kordy;S. Mauw;P. Schweitzer
通讯作者: P. Schweitzer
软件的假设保证模型检查:比较案例研究
DOI: --
发表时间: 1999
期刊: SPIN
影响因子: 1.8
作者:
C. Păsăreanu;Matthew B. Dwyer;M. Huth
通讯作者: M. Huth
DOI: --
发表时间: 2019
影响因子: --
作者:
Yimin Cui;Jun;Wei Zhao;Cheng Luan
通讯作者: Cheng Luan