Research on Intrusion Recognition and Tracing under Attack and Defense Confront Environment
Huiying Lv, Huan Li
Capital Normal University
内容与影响
A new method for intrusion recognition and tracing under attack-defense confront environment is proposed in this paper. In order to do that antagonizing status and state transforming is deeply studied between attacker and defender, and all kinds of security information and knowledge are analyzed and formally described. Then based on obtained information, a safety model for attack-defense confronting is presented, from the model a safety state transition graph can be produced. The model is given a formalized description based on Expanded Finite-State Automata (EFSA), which visually describes both intruding process and defending process. The model is used to thoroughly analyze attack and defense activities and predict the subsequent safety state transitions, and also intuitively illustrates all possible routes and states during attacker's reaching specific target. So the model can be used to trace intruding process and deduce attack intention and target, further to predict follow-up attack, which can provide a useful evidence and guidance for attack response and security decision. Finally this method is demonstrated and validated in an example network environment.
逐年被引趋势
关键指标
同类平均 = 1
同领域 · 同年份 · 同类型
Google Scholar 与 OpenAlex 的被引统计范围不同,数值存在差异属正常。
AI 辅助阅读
依据:摘要
回答优先基于摘要、文献信息与可获取全文;依据不足时会明确说明。
学术脉络
学科主题
计算机 / AINetwork Security and Intrusion Detection
Information and Cyber Security · Advanced Malware Detection Techniques
参考文献 15
此处列出前 3 条
施引文献 1
按被引量排序,此处列出前 3 条