원문정보
초록
영어
When low level services suffer attacks, the high level services that depend on them will suffer from indirect threats. Most evaluation methods do not consider dependency relationships among services, lack the evaluation upon indirect threats, do not discuss the composition of multiple source threats. Upon these problems, an evaluation method that based on dependency analysis is presented. First, dependency relationships among services are identified from the management information of operating system and the monitoring records of network communication. Afterwards, the direct threats imposed by attacks on services and the indirect threats that transfer along dependency relationships are evaluated, and the threats that come from multiple attacks are composed by means of nonlinear composition. Finally, according to threat degrees and service values, the threat situation of the whole service architecture is evaluated. Experiment shows that the method can evaluate the threat imposed by multiple attacks on network service architecture more comprehensively and deeply.
목차
1. Introduction
2. Safety Factor
2.1. Services
2.2. Attack
3. Dependencies
4. Assessment Methods
4.1. The Basic Idea
4.2. Describe Algorithm
5. Experimental Analysis
5.1. Test Environment
5.2. The Result Analysis
6. Conclusion
References
