What Vulnerability Do We Need to Patch First?

What Vulnerability Do We Need to Patch First?
复制标题

我们首先需要修补哪些漏洞?

DOI:
--
复制
发表时间:
2014
期刊:
2014 44th Annual IEEE/IFIP International Conference on Dependable Systems and Networks
影响因子:
--
通讯作者:
A. Haqiq
A. Haqiq
中科院分区:
--
文献类型:
--
作者:
Jin B. Hong;Dong Seong Kim;A. Haqiq

文献摘要

被引文献

相似文献

计算一组优先级的漏洞补丁是很重要的系统管理员,以确定修补的漏洞,更重要的是网络安全的顺序。评估和分析安全性以找到要修补的漏洞的一种方法是使用攻击表示模型(ARM)。然而,使用ARM的安全解决方案仅针对联网系统的当前状态进行了优化。因此,ARM必须重新分析网络安全,导致同一任务的多次迭代,以获得要修补的优先级漏洞集。为了解决这个问题,我们建议使用重要性措施来排名网络主机和漏洞,然后联合收割机这些措施,优先顺序的漏洞修补。我们表明,几乎等同的优先级设置的漏洞可以计算在比较详尽的搜索方法在各种网络的情况下,而计算集的性能显着提高,而等价的解决方案计算在各种网络的情况下。
Computing a prioritized set of vulnerabilities to patch is important for system administrators to determine the order of vulnerabilities to be patched that are more critical to the network security. One way to assess and analyze security to find vulnerabilities to be patched is to use attack representation models (ARMs). However, security solutions using ARMs are optimized for only the current state of the networked system. Therefore, the ARM must reanalyze the network security, causing multiple iterations of the same task to obtain the prioritized set of vulnerabilities to patch. To address this problem, we propose to use importance measures to rank network hosts and vulnerabilities, then combine these measures to prioritize the order of vulnerabilities to be patched. We show that nearly equivalent prioritized set of vulnerabilities can be computed in comparison to an exhaustive search method in various network scenarios, while the performance of computing the set is dramatically improved, while equivalent solutions are computed in various network scenarios.