Title :
Design and Application of Penetration Attack Tree Model Oriented to Attack Resistance Test
Author :
Ning, Zhu ; Xin-yuan, Chen ; Yong-fu, Zhang ; Si-yuan, Xin
Author_Institution :
Inst. of Electron. Technol., Inf. Eng. Univ., Zhengzhou
Abstract :
Attack model is the foundation for organizing and implementing attacks against the target system in Attack Resistance Test. By redefining the node of the attack tree model and redescribing the relation of the attack tree nodes, we build a penetration attack tree model which can describe, organize, classify, manage and schedule the attacks for Attack Resistance Test. The organization method of the penetration attack tree is designed in this paper, and an algorithm of attack serialization is put forward. We also design and realize a penetration attack system whose attack scheme is the instance of the model. In the end we present an execution example of the penetration attack system. The example shows that the penetration attack model can describe the logical relationship of the attacks detailedly and effectively, and its serialization result can provide the guidance for penetration attack.
Keywords :
security of data; attack resistance test; attack serialization; penetration attack system; penetration attack tree model; Automatic testing; Computer science; Electronic equipment testing; Information security; Organizing; Software design; Software engineering; Software testing; Subspace constraints; System testing; Attack Resistance Testing; Attack Tree; Penetration Attack Tree; Penetration Attack Tree Model;
Conference_Titel :
Computer Science and Software Engineering, 2008 International Conference on
Conference_Location :
Wuhan, Hubei
Print_ISBN :
978-0-7695-3336-0
DOI :
10.1109/CSSE.2008.1137