基于多维度特征的攻击者和资产风险评估方法

AN INTRUDER AND ASSET RISK ASSESSMENT METHOD BASED ON MULTI-DIMENSIONAL FEATURES

  • 摘要: 针对当前网络安全风险评估体系中定性到定量的风险呈现缺失的问题,提出基于多维度特征的攻击者和资产风险评估方法;从攻击IP的角度设计了三种维度特征评估每个攻击IP,以此判定高威胁的攻击者;从资产IP的角度,设计了威胁维度特征评分和脆弱性维度特征评分,结合资产的识别与赋值,得到判定高风险的资产。提出的评估方法可以用于展示当前攻击者和系统的风险情况,最大化现有的防御能力,具有一定的理论意义和实践价值。

     

    Abstract: According to the lack of the transition from qualitative risks to quantitative risks in the current cyber security risk assessment system, this paper proposed an intruder and asset risk assessment method based on multi-dimensional features. From the aspect of the intruder, this paper designed three dimensions to evaluate each intruder, and obtained the top-threat intruders. From the aspect of assets, this paper designed the dynamic scoring of threat dimensions and vulnerability dimensions. Combining the identification and value assignment of assets, we obtained the top-risk assets. The results of this paper can be used to display the current top-risk intruders and risked systems to security analysts, to maximize the existing defense countermeasure. The result is of theory significance and practical meanings.

     

/

返回文章
返回