CVSS attack graphs - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2011

CVSS attack graphs

Résumé

Attack models and attack graphs are efficient tools to describe and analyse attack scenarios aimed at computer networks. More precisely, attack graphs give all possible scenarios for an attacker to reach a certain goal, exploiting vulnerabilities of the targeted network. Nevertheless they give no information about the damages induced by these attacks, nor about the probability of exploitation of these scenarios. In this paper, we propose to combine attack graphs and CVSS framework, in order to add damage and exploitability probability information. Then, we define a notion of risk for each attack scenario, which is based on quantitative information added to attack graphs.
Fichier non déposé

Dates et versions

hal-00633615 , version 1 (19-10-2011)

Identifiants

  • HAL Id : hal-00633615 , version 1

Citer

Laurent Gallon, Jean Jacques Bascou. CVSS attack graphs. The7th International Conference on Signal Image Tehcnology & Internet Based Systems (SITIS 2011), Nov 2011, Dijon, France. ⟨hal-00633615⟩

Collections

UNIV-PAU LIUPPA
51 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More