A cost-sensitive entropy-based network security situation assessment model

Network intrusion attempts have been on the rise recently. Researchers have shown an increased interest in assessing the security situation for entire network instead of single asset. A considerable amount of assessment models have been designed. However, there is a lack of solid and standard guidel...

Full description

Saved in:
Bibliographic Details
Main Authors: Leau, Yu Beng, Selvakumar Manickam
Format: Article
Language:English
Published: American Scientific Publishers 2016
Online Access:https://eprints.ums.edu.my/id/eprint/15510/1/A_cost.pdf
https://eprints.ums.edu.my/id/eprint/15510/
https://doi.org/10.1166/asl.2016.7076
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Network intrusion attempts have been on the rise recently. Researchers have shown an increased interest in assessing the security situation for entire network instead of single asset. A considerable amount of assessment models have been designed. However, there is a lack of solid and standard guidelines to define the importance of network asset. In addition, based on our knowledge, no research has been found that adequately covered the cost factor in the assessment model. Thus, the purpose of this paper is to propose a cost-sensitive entropy-based network security situation assessment model. With the aid of Analytic Hierarchy Process (AHP), the model can quantitatively determine the importance of assets in the network by considering the tangible and intangible criteria. To verify the performance of proposed model, a simulation of National Advanced IPv6 Centre (NAv6)’s network environment has been setup. The simulation results regarding security situation in particular time-interval are promising. Hence, the proposed model is able to provide network administrator a more reliable reference before any further decision making for the organization’s network.