• Home
  • Search
  • Environment Aware Report: A Minimalist Approach To a Complex Problem, Version 1.1
  • https://doi.org/10.21236/ada426335Copy DOI Icon

Environment Aware Report: A Minimalist Approach To a Complex Problem, Version 1.1

  • Aug 29, 2004
  • Todd Heberlein
Show More
  • Abstract
  • Literature Map
  • References
  • Similar Papers
Abstract

Abstract : Report developed under SBIR contract for Topic No. N03-T010. In an ideal world, system and network administrators would keep all of their systems fully patched all the time. Unfortunately, for a variety of reasons few sites have the luxury of such an approach. Given that administrators cannot apply all possible countermeasures (e.g., patches), our next best strategy is to identify an ordering of countermeasures that will provide the optimal level of security for a given amount of changes to the network. One of the primary approaches to identify this optimized ordering is through attack graph analysis, and this approach has received considerable attention recently. Unfortunately, there are a number of critical problems with this strategy. This paper presents an approach that takes advantage of simple filtering capabilities in commodity routers that partially addresses the limitation of the attack graph strategy. Furthermore, in at least one problem, dealing with unknown vulnerabilities, the simple strategy presented in this paper can produce better results than the attack graph approach.

Similar Papers
  • Book Chapter

A Memetic Particle Swarm Optimization Algorithm for Network Vulnerability Analysis

  • Apr 26, 2011
  • Mahdi Abadi +1
  • Research Article
  • Citations21

Implementing interactive analysis of attack graphs using relational databases

  • Jul 16, 2008
  • Journal of Computer Security
  • Lingyu Wang +3
  • Conference Article
  • Citations1

A Hybrid Attack Graph Analysis Method based on Model Checking

  • Nov 01, 2022
  • Yaogang Ge +3
  • Book Chapter
  • Citations9

Network Vulnerability Analysis Using a Constrained Graph Data Model

  • Jan 01, 2016
  • Mridul Sankar Barik +2
  • Conference Article
  • Citations28

Automatic security management of smart infrastructures using attack graph and risk analysis

  • Jul 01, 2020
  • Denis Ivanov +3
  • Conference Article
  • Citations528

Two formal analyses of attack graphs

  • Jun 24, 2002
  • S Jha +2
  • Conference Article
  • Citations2

Game Theoretic Models for Cyber Deception

  • Nov 15, 2021
  • Fei Fang
  • Conference Article
  • Citations104

Time-efficient and cost-effective network hardening using attack graphs

  • Jun 01, 2012
  • Massimiliano Albanese +2
  • PDF
  • Research Article
  • Citations18

An Invocation Chain Test and Evaluation Method for Fog Computing

  • Aug 28, 2020
  • Wireless Communications and Mobile Computing
  • Yue Zhao +3
  • Conference Article
  • Citations11

IOTA: A Framework for Analyzing System-Level Security of IoTs

  • May 01, 2022
  • Zheng Fang +6
  • Book Chapter
  • Citations95

GARNET: A Graphical Attack Graph and Reachability Network Evaluation Tool

  • Sep 15, 2008
  • Leevar Williams +2
  • PDF
  • Research Article
  • Citations27

Multistage Attack Graph Security Games: Heuristic Strategies, with Empirical Game-Theoretic Analysis

  • Dec 13, 2018
  • Security and Communication Networks
  • Thanh H Nguyen +3
  • Book Chapter
  • Citations4

Optimal Attack Path Generation Based on Supervised Kohonen Neural Network

  • Jan 01, 2017
  • Yun Chen +2
  • Book Chapter
  • Citations178

Identifying Critical Attack Assets in Dependency Attack Graphs

  • Jan 01, 2008
  • Reginald E Sawilla +1
  • Conference Article
  • Citations5

Integrating Mission-Centric Impact Assessment to Operational Resiliency in Cyber-Physical Systems

  • Dec 01, 2020
  • Md Ariful Haque +3
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.