节点文献

一种面向网络环境属性的安全风险分析框架

Security risk analysis framework based on network environment attributes

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 陈宇峰向郑涛蒋伟荣简炜

【Author】 CHEN Yu-feng1,2,XIANG Zheng-tao1,JIANG Wei-rong1,JIAN Wei1 1.School of Electrical and Information Engineering,Hubei University of Automotive Technology,Shiyan,Hubei 442002,China 2.College of Computer Science and Technology,Zhejiang University,Hangzhou 310027,China

【机构】 湖北汽车工业学院电气与信息工程学院浙江大学计算机科学与技术学院

【摘要】 通过对网络环境中软硬件条件以及网络攻击机理的分析,提出了一种基于网络环境属性的安全风险分析框架。从软硬件条件的分析中得到环境因素集合;从参考模型和实际监测数据两种情况分析了环境因素引发风险的可能性;通过环境因素与风险后果的映射,分析了环境因素引发不同后果的风险严重性;并从安全边界的角度分析了具有关联性的环境风险和安全子因素所引发风险的可能性和严重性。通过实例说明,该框架能够系统化地分析网络安全风险。

【Abstract】 Based on the analysis of software and hardware of network environment and mechanism of attacks,a security risk analysis framework based on network environment attributes is proposed.The set of environment elements is obtained after analyzing the software and hardware.The probabilities of risks that environment elements may induce are analyzed with two circumstances,which are reference model and real monitor data.By mapping the environment elements and consequences, the risk severe induced by environment elements is analyzed.The risk probabilities and severe induced by related environment risk and security elements are investigated with security boundary.Experiments show that with the framework,network security risk analysis can be implemented systematically.

【基金】 湖北省自然科学基金(No.2006ABA039);浙江省科技计划重点项目(No.2005C33034,No.2007C21034);湖北汽车工业学院博士科研启动基金项目(No.BK200901)~~
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2010年34期
  • 【分类号】TP393.08
  • 【被引频次】2
  • 【下载频次】102
节点文献中: 

本文链接的文献网络图示:

本文的引文网络