Visible to the public Analysis of Complex Networks for Security Issues using Attack Graph

TitleAnalysis of Complex Networks for Security Issues using Attack Graph
Publication TypeConference Paper
Year of Publication2019
AuthorsMusa, Tanvirali, Yeo, Kheng Cher, Azam, Sami, Shanmugam, Bharanidharan, Karim, Asif, Boer, Friso De, Nur, Fernaz Narin, Faisal, Fahad
Conference Name2019 International Conference on Computer Communication and Informatics (ICCCI)
Keywordsattach graph, attack graph, Attack Graph Generation Tools., Attack Graphs, attack paths, complex networks, Complexity theory, composability, computer network security, computer security, Databases, Informatics, MulVal, network health, network theory (graphs), network vulnerabilities, Organizations, Predictive Metrics, pubcrawl, Resiliency, security analysis, security issues, Tools, VA reports, VA scans, vulnerability assessment
AbstractOrganizations perform security analysis for assessing network health and safe-guarding their growing networks through Vulnerability Assessments (AKA VA Scans). The output of VA scans is reports on individual hosts and its vulnerabilities, which, are of little use as the origin of the attack can't be located from these. Attack Graphs, generated without an in-depth analysis of the VA reports, are used to fill in these gaps, but only provide cursory information. This study presents an effective model of depicting the devices and the data flow that efficiently identifies the weakest nodes along with the concerned vulnerability's origin.The complexity of the attach graph using MulVal has been greatly reduced using the proposed approach of using the risk and CVSS base score as evaluation criteria. This makes it easier for the user to interpret the attack graphs and thus reduce the time taken needed to identify the attack paths and where the attack originates from.
DOI10.1109/ICCCI.2019.8822179
Citation Keymusa_analysis_2019