Topological Vulnerability Analysis
نویسندگان
چکیده
Traditionally, network administrators rely on labor-intensive processes for tracking network configurations and vulnerabilities. This requires a great deal of expertise, and is error prone because of the complexity of networks and associated security data. The interdependencies of network vulnerabilities make traditional point-wise vulnerability analysis inadequate. We describe a Topological Vulnerability Analysis (TVA) approach that analyzes vulnerability dependencies and shows all possible attack paths into a network. From models of the network vulnerabilities and potential attacker exploits, we compute attack graphs that convey the impact of individual and combined vulnerabilities on overall security. TVA finds potential paths of vulnerability through a network, showing exactly how attackers may penetrate a network. From this, we identify key vulnerabilities and provide strategies for protection of critical network assets. TVA provides predictive context for network hardening, intrusion detection deployment and alarm correlation, and optimal attack response. Further, it employs efficient algorithms that scale well to larger networks.
منابع مشابه
Do topological models provide good information about electricity infrastructure vulnerability?
In order to identify the extent to which results from topological graph models are useful for modeling vulnerability in electricity infrastructure, we measure the susceptibility of power networks to random failures and directed attacks using three measures of vulnerability: characteristic path lengths, connectivity loss, and blackout sizes. The first two are purely topological metrics. The blac...
متن کاملتحلیل فضایی اثرات شبکه معابر بر آسیب پذیری محلات شهری در برابر زلزله مورد مطالعه : محله امیریه شهر سبزوار
As an important factor to be considered, rapid population growth, lack of resources and appropriate management has led the natural hazards threatening human societies increasingly. Although it is impossible to eliminate the effects of natural hazards, however, risk reduction and risk cities against natural phenomena has become the main topics of urban planning and design in recent years. Iran i...
متن کاملVulnerability Metrics for the Airspace System
Simple topological vulnerability metrics are defined for the air transportation system, that are meant to reflect the impact levels of potential disruptions including severe weather and man-made threats (e.g., cyber attacks). Specifically, a flowvulnerability metric is defined using the Laplacian matrix of the air traffic network’s graph. In turn, event and total vulnerability metrics are posit...
متن کاملSeismic vulnerability assessment of power transmission networks using complex-systems based methodologies
This paper develops a methodology for seismic vulnerability assessment of power transmission systems. The analysis is carried out from the perspective of system’s form (i.e., topological importance of elements) and system’s strength (i.e., probability of failure). The form combines the electrical properties of the network (e.g., electrical distance, power flow) with the systems approach via hie...
متن کاملStructural Vulnerability Analysis of Electric Power Distribution Grids
Power grid outages cause huge economical and societal costs. Disruptions in the power distribution grid are responsible for a significant fraction of electric power unavailability to customers. The impact of extreme weather conditions, continuously increasing demand, and the over-ageing of assets in the grid, deteriorates the safety of electric power delivery in the near future. It is this depe...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2010