Patent · US Active

Network attack modeling, analysis, and response

US7904962B1 · kind B1 · utility

80Cited by
3References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 10, 2006
Grant dateMar 8, 2011
Priority date
Expiry dateNov 21, 2028

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/1425
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

Disclosed is a system for modeling, analyzing, and responding to network attacks. Machines are mapped to components, components are mapped to vulnerabilities, and vulnerabilities are mapped to exploits. Each of the exploits includes at least one precondition mapped to at least one postcondition. An attack graph which defines inter-exploit distances is generated using at least one of the exploits. The attack graph is aggregated. At least one hardening option is determined using the aggregated attack graph. Hardening options include applying at least one corrective measure to at least one initial condition, where the initial condition is the initial state of a precondition.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.