CFP last date
20 May 2024
Reseach Article

Network Pattern Analysis based Vulnerability Measurement using Attack Graph Hierarchical Visualization Approach

by Abhishek Pipliya, Sachin Chirgaiya
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 99 - Number 11
Year of Publication: 2014
Authors: Abhishek Pipliya, Sachin Chirgaiya
10.5120/17421-8218

Abhishek Pipliya, Sachin Chirgaiya . Network Pattern Analysis based Vulnerability Measurement using Attack Graph Hierarchical Visualization Approach. International Journal of Computer Applications. 99, 11 ( August 2014), 45-50. DOI=10.5120/17421-8218

@article{ 10.5120/17421-8218,
author = { Abhishek Pipliya, Sachin Chirgaiya },
title = { Network Pattern Analysis based Vulnerability Measurement using Attack Graph Hierarchical Visualization Approach },
journal = { International Journal of Computer Applications },
issue_date = { August 2014 },
volume = { 99 },
number = { 11 },
month = { August },
year = { 2014 },
issn = { 0975-8887 },
pages = { 45-50 },
numpages = {9},
url = { https://ijcaonline.org/archives/volume99/number11/17421-8218/ },
doi = { 10.5120/17421-8218 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
}
%0 Journal Article
%1 2024-02-06T22:27:58.592507+05:30
%A Abhishek Pipliya
%A Sachin Chirgaiya
%T Network Pattern Analysis based Vulnerability Measurement using Attack Graph Hierarchical Visualization Approach
%J International Journal of Computer Applications
%@ 0975-8887
%V 99
%N 11
%P 45-50
%D 2014
%I Foundation of Computer Science (FCS), NY, USA
Abstract

Network is growing very fast in terms of their users, technologies and devices integrated together for delivering the demanded communication services effectively. Such process requires lots of policies and configurations arrangements to improve availability and reliability of data. Most of the times these changes are performing the desired action but sometime the action or event is uncertain which let the systems performance down. These uncertain affects are due to sudden attack occurrence and cause degradations in service. These attacks are prevented using forecasting process by which attack pattern and impact are analysed. It is known as vulnerability assessment and attack removal. Larger is the data more accurate will be the attack patters detection from the data. Existing approaches and tools generates the weak and delayed output without any forecasted behaviours. This paper proposes a novel model NPA-VM approach for network vulnerability assessment using attack graphs and network metrics. The approach is capable of achieving its goal in real time. At the preliminary level of evaluation, proposed method is showing its strong holds in the area of attacks predictions.

References
  1. Rongrong Xi, Shuyuan Jin, Xiaochun Yun and Yongzheng Zhang, "CNSSA: A Comprehensive Network Security Situation Awareness System", in International Joint Conference of IEEE TrustCom, ISSN: 978-0-7695-4600-1/11, doi: 10. 1109/TrustCom. 2011. 62, 2011.
  2. Wang, C. Yao, A. Singhal and S. Jajodia, "Network Security Analysis Using Attack Graphs :Interactive Analysis of Attack Graphs using Relational Queries", in proceedings of IFIP WG Working Conference on Data and Application Security (DBSEC), 11. 3 pages 119-132, 2006.
  3. Mr. Marc Grégoire and Mr. Luc Beaudoin, "Visualisation for Network Situational Awareness in Computer Network Defence", in proceedings of visualisation and the common operational picture meeting RTO-MP-IST-043, Paper 20. 2008.
  4. White Paper on, "Public Safety and Homeland Security Situational Awareness", in ESRI, February 2008.
  5. P. Barford, M. Dacier, T. G. Dietterich, M. Fredrikson, "Cyber SA: Situational Awareness", in Cyber Defense University of Wisconsin, 2009.
  6. Rostyslav Barabanov, Stewart Kowalski and Louise Yngström, "Information Security Metrics", DSV Report series No 11-007, Mar 25, 2011
  7. Lingyu Wang, Tania Islam, Tao Long, Anoop Singhal, and Sushil Jajodia, "An Attack Graph-Based Probabilistic Security Metric", in National Institute of Standards and Technology Computer Security Division; Concordia Institute for Information Systems Engineering, Montreal, Canada.
  8. Marianne Swanson, Nadya Bartol, John Sabato, Joan Hash, and Laurie Graffo, "Security Metrics Guide for Information Technology Systems", in NIST Special Publication 800-55, July 2003.
  9. William Streilein, Kendra Kratkiewicz, Michael Sikorski, Keith Piwowarski, Seth Webster, "PANEMOTO: Network Visualization of Security Situational Awareness through Passive Analysis ", in Workshop on Information Assurance United States Military Academy, Proceedings of the IEEE, 2007.
  10. Rongzhen FAN, Mingkuai ZHOU, "Network Security Awareness and Tracking Method by GT", in Journal of Computational Information Systems, Binary Information Press, and ISSN: 1043-1050, Vol. 9: Issue 3, 2013.
  11. Igor Kotenko and Andrew Chechulim, "Attack Modelling and Security Evaluation in SIEM System", in International Transaction of System Science and Application, SIWN Press,, ISSN:2051-5642, Vol. 8, Dec 2012.
  12. Bon K. Sy, "Integrating intrusion alert information to aid forensic explanation: An analytical intrusion detection framework for distributive IDS", in Elsevier Journal of Information Fusion, ISSN: 1566-2535, doi:10. 1016/j. inffus. 2009. 01. 001, 2009.
  13. Timothy Shimeall, Sidney Faber, Markus DeShon and Andrew Kompanek, "Using SiLK for Network Traffic Analysis", in CERT R Network Situational Awareness Group, Carnegie Mellon University. September 2010.
  14. William Yurcik, "Visualizing NetFlows for Security at Line Speed: The SIFT Tool Suite", in 19th Large Installation System Administration Conference (LISA '05), 2005.
  15. Xiaoxin Yin, William Yurcik and Michael Treaster, "VisFlowConnect: NetFlow Visualizations of Link Relationships for Security Situational Awareness", in ACM, doi: 1­58113­974­8/04/0010, Oct 2004.
  16. Xiaoxin Yin, William Yurcik and Adam Slagell, "The Design of VisFlowConnect-IP: a Link Analysis System for IP Security", in National Center for Advanced Secure Systems Research (NCASSR), 2010.
  17. Ji-Bao Lai, Hui-Qiang Wang, Xiao-Wu Liu and Ying Liang, "WNN-Based Network Security Situation Quantitative Prediction Method and Its Optimization", in Journal of computer science and technology, Vol. 23, Issue 3, ISSN: 0222:0230, Mar 2008.
  18. SunJun Liu, Le Yu and Jin Yang, "Research on Network Security Situation Awareness Technology based on AIS", in International Journal of Knowledge and Language Processing, ISSN: 2191-2734, Volume 2, Number 2, April 2011.
Index Terms

Computer Science
Information Sciences

Keywords

Network Security Situation Awareness Vulnerability Assessment Attack Graphs Configuration and Security Metrics Forecasting NPA-VM (Network Pattern Analysis Based Vulnerability Measurement).