Sie befinden Sich nicht im Netzwerk der Universität Paderborn. Der Zugriff auf elektronische Ressourcen ist gegebenenfalls nur via VPN oder Shibboleth (DFN-AAI) möglich. mehr Informationen...
Ergebnis 17 von 348

Details

Autor(en) / Beteiligte
Titel
Network Forensics Method Based on Evidence Graph and Vulnerability Reasoning
Ist Teil von
  • Future internet, 2016-12, Vol.8 (4), p.54-54
Ort / Verlag
Basel: MDPI AG
Erscheinungsjahr
2016
Link zum Volltext
Quelle
EZB Electronic Journals Library
Beschreibungen/Notizen
  • As the Internet becomes larger in scale, more complex in structure and more diversified in traffic, the number of crimes that utilize computer technologies is also increasing at a phenomenal rate. To react to the increasing number of computer crimes, the field of computer and network forensics has emerged. The general purpose of network forensics is to find malicious users or activities by gathering and dissecting firm evidences about computer crimes, e.g., hacking. However, due to the large volume of Internet traffic, not all the traffic captured and analyzed is valuable for investigation or confirmation. After analyzing some existing network forensics methods to identify common shortcomings, we propose in this paper a new network forensics method that uses a combination of network vulnerability and network evidence graph. In our proposed method, we use vulnerability evidence and reasoning algorithm to reconstruct attack scenarios and then backtrack the network packets to find the original evidences. Our proposed method can reconstruct attack scenarios effectively and then identify multi-staged attacks through evidential reasoning. Results of experiments show that the evidence graph constructed using our method is more complete and credible while possessing the reasoning capability.
Sprache
Englisch
Identifikatoren
ISSN: 1999-5903
eISSN: 1999-5903
DOI: 10.3390/fi8040054
Titel-ID: cdi_doaj_primary_oai_doaj_org_article_9d75ff02aa7f46fa9ec98e79447255cf

Weiterführende Literatur

Empfehlungen zum selben Thema automatisch vorgeschlagen von bX