为了及时发现网络中潜在的攻击威胁、计算网络的潜在风险,提出了一种基于攻击图的网络风险计算方法。通过关联网络中的漏洞建立攻击图、发现潜在的攻击序列和威胁,从而计算网络潜在的风险值。此方法考虑了攻击路径权重和资产权重对网络风险的影响,使计算结果更符合实际情况。实验结果表明,提出的风险计算方法能够准确和有效地计算网络的潜在风险。
In order to discover the potential threat of attack in the network in time and compute the potential network risks,the network risk calculation model based on attack graph was introduced.The model established attack graph through associated weak points in the network,and found out potential attack sequence and threats,calculated the network potential risk value.The model took into account the attack path weight and the assets weight,which made the result more in line with the actual situation.Experimental results showed that,the potential risk which the computational model calculated was more accurate and effective.