Extending attack graph-based metrics for enterprise network security management

3Citations
Citations of this article
6Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Measurement of enterprise network security is a long standing challenge to the research community. However, practical security metrics are vital for securing enterprise networks. With the constant change in the size and complexity of enterprise networks, and application portfolios as well, network attack surface keeps changing and hence monitoring of security performance is increasingly difficult and challenging problem. Existing attack graph-based security metrics are inefficient in capturing change in the network attack surface. In this paper, we have explored the possible use of graph-based distance metrics for capturing the change in the security level of dynamically evolving enterprise networks. We used classical graph similarity measures such as Maximum Common Subgraph (MCS), and Graph Edit Distance (GED) as an indicator of change in the enterprise network security. Our experimental results shows that graph similarity measures are efficient and capable of capturing changing network attack surface in dynamic (i.e. time varying) enterprise networks.

Cite

CITATION STYLE

APA

Bopche, G. S., & Mehtre, B. M. (2016). Extending attack graph-based metrics for enterprise network security management. In Smart Innovation, Systems and Technologies (Vol. 44, pp. 315–325). Springer Science and Business Media Deutschland GmbH. https://doi.org/10.1007/978-81-322-2529-4_33

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free