Abstract

The paper analyzes security databases including attack patterns database, vulnerability database and weaknesses database. Special attention is given to the schema that underlies the attack patterns database and specifies its objects and relations between them. This scheme is used for selection of features that characterize different classes of cyber-attack goals. The paper outlines metrics of security related objects, such as attacks, weaknesses and vulnerabilities provided by different schemas, the classes of cyber-attack goals, and analyzes relations between different goals and features of cyber-attacks. The experiments demonstrated dependency between the values of selected features and their applicability for determination of different classes of cyber-attack goals.

Details

Title
Determination of features of cyber-attack goals based on analysis of data in open security data sources
Author
Doynikova, E V 1 ; Fedorchenko, A V 1 ; Kryukov, R O 2 

 St. Petersburg Institute for Informatics and Automation of the Russian Academy of Sciences, 39, 14 Line, St.Petersburg, 199178, Russia 
 A.F. Mozhaysky’s Military-Space Academy, 13, Jdanovskaya av., St. Petersburg, 197198, Russia 
Publication year
2020
Publication date
Jan 2020
Publisher
IOP Publishing
ISSN
17578981
e-ISSN
1757899X
Source type
Scholarly Journal
Language of publication
English
ProQuest document ID
2561964737
Copyright
© 2020. This work is published under http://creativecommons.org/licenses/by/3.0/ (the “License”). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.