1. Network Security Evaluation Method via Attack Graphs and Fuzzy Cognitive Maps
- Author
-
Aodah Diamah, Masoud Mohammadian, and Bala M. Balachandran
- Subjects
Network administrator ,Network security ,business.industry ,Event (computing) ,Computer science ,Compromise ,media_common.quotation_subject ,Fuzzy control system ,Attack graph ,Computer security ,computer.software_genre ,Fuzzy cognitive map ,Genetic algorithm ,business ,computer ,Computer network ,media_common - Abstract
When presented with an attack graph, network administrator may raise question on how to harden the network. To defend his network, network administrator should be supplied with list of all attack paths that can compromise the network. With this list, he can decide which paths are worth paying attention to and defending against. In the event of limited resources, network administrator may only be interested in certain critical paths which cause worst network attack. Attack graph alone is not always helpful on its own and needs additional work for this purpose. In this paper we present the use of a Fuzzy Cognitive Map which is converted from attack graph with genetic algorithm to find attack scenarios causing worst impact on network security. The identified scenarios can then help network administrator to mitigate risks associated with the attack scenarios and improve his network security.
- Published
- 2012
- Full Text
- View/download PDF