RUS  ENG
Full version
JOURNALS // Informatics and Automation // Archive

Tr. SPIIRAN, 2012 Issue 23, Pages 50–79 (Mi trspy535)

Methodology of iterative attack modelling in large computer networks

D. I. Kotenko, I. V. Kotenko, I. B. Saenko

St. Petersburg Institute for Informatics and Automation of RAS

Abstract: The article describes the basic components of the methodology of iterative attack modelling in large computer networks, which are formal model, analysis algorithms for probabilistic attack graphs and software. Formal model of iterative attack modelling process involves the process models of modelling task definition, attack model building, model execution and model result analysis. Probabilistic attack graph analysis algorithms provide calculation of security metrics and finding attack sub-graphs associated with intruder action scripts. Software tools for attack model analysis in large computer networks provide their static analysis and analysis of dynamic characteristics.

Keywords: attack modeling, large computer networks, attack graph, security analysis.

UDC: 004.056.53

Received: 06.08.2012



© Steklov Math. Inst. of RAS, 2024