KR100729151B1 - 마코프 프로세스 기반의 피해 산정 방법, 그 기록 매체 및그 장치 - Google Patents
마코프 프로세스 기반의 피해 산정 방법, 그 기록 매체 및그 장치 Download PDFInfo
- Publication number
- KR100729151B1 KR100729151B1 KR1020060066832A KR20060066832A KR100729151B1 KR 100729151 B1 KR100729151 B1 KR 100729151B1 KR 1020060066832 A KR1020060066832 A KR 1020060066832A KR 20060066832 A KR20060066832 A KR 20060066832A KR 100729151 B1 KR100729151 B1 KR 100729151B1
- Authority
- KR
- South Korea
- Prior art keywords
- threat
- occurrence
- threats
- frequency
- probability
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Expired - Fee Related
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/55—Detecting local intrusion or implementing counter-measures
- G06F21/552—Detecting local intrusion or implementing counter-measures involving long-term monitoring or reporting
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Software Systems (AREA)
- Theoretical Computer Science (AREA)
- Computer Hardware Design (AREA)
- Physics & Mathematics (AREA)
- General Engineering & Computer Science (AREA)
- General Physics & Mathematics (AREA)
- Management, Administration, Business Operations System, And Electronic Commerce (AREA)
Abstract
Description
| 1월 | 2월 | 3월 | 4월 | 5월 | 6월 | 7월 | 8월 | 9월 | 10월 | 11월 | 12월 | 총계 | |
| 2001년 | 85 | 125 | 70 | 89 | 85 | 64 | 65 | 495 | 268 | 77 | 51 | 97 | 1,571 |
| 2002년 | 401 | 119 | 82 | 59 | 286 | 417 | 313 | 298 | 210 | 465 | 472 | 990 | 4,112 |
| 2003년 | 1148 | 557 | 1132 | 934 | 306 | 450 | 185 | 544 | 119 | 137 | 129 | 96 | 5,837 |
| 2004년 | 154 | 148 | 118 | 1066 | 493 | 181 | 72 | 22 | 16 | 24 | 125 | 90 | 2,509 |
| 2005년 | 29 | 20 | 15 | 3 | 15 | 36 | 118 | ||||||
| 평균 | 363.4 | 193.8 | 283.4 | 430.2 | 237.0 | 229.6 | 158.7 | 339.7 | 153.2 | 175.7 | 194.2 | 318.2 |
| 1월 | 2월 | 3월 | 4월 | 5월 | 6월 | 7월 | 8월 | 9월 | 10월 | 11월 | 12월 | 총계 | |
| 2001년 | 1 | 1529 | 2429 | 625 | 684 | 520 | 6106 | 5965 | 10772 | 4795 | 4068 | 3024 | 40,518 |
| 2002년 | 2005 | 1384 | 1306 | 3165 | 2760 | 1774 | 1706 | 1458 | 1610 | 3566 | 3028 | 1684 | 25,446 |
| 2003년 | 1361 | 1320 | 2537 | 2350 | 3704 | 1854 | 1185 | 9748 | 19682 | 3999 | 11658 | 8949 | 68,347 |
| 2004년 | 4824 | 5750 | 9820 | 4233 | 19728 | 22767 | 15228 | 8132 | 3153 | 2658 | 2319 | 2117 | 100,727 |
| 2005년 | 1832 | 1205 | 1049 | 648 | 1302 | 1040 | 7,076 | ||||||
| 평균 | 2,004 | 2,237 | 3,428 | 2,204 | 5,635 | 5,591 | 6,056 | 6,325 | 8,804 | 3,754 | 5,268 | 3,943 |
| 1월 | 2월 | 3월 | 4월 | 5월 | 6월 | 7월 | 8월 | 9월 | 10월 | 11월 | 12월 | 총계 | |
| 2002년 | 1665 | 1256 | 2080 | 2110 | 1776 | 1418 | 1177 | 1216 | 1601 | 2483 | 1596 | 1597 | 20335 |
| 2003년 | 648 | 593 | 656 | 402 | 345 | 1489 | 469 | 1168 | 3120 | 3560 | 2201 | 315 | 14966 |
| 2004년 | 2004 | 3389 | 10631 | 18546 | 11618 | 833 | 1591 | 1964 | 901 | 1794 | 2628 | 1381 | 57217 |
| 평균 | 1,439 | 1,746 | 4,455 | 7,019 | 4,579 | 1,246 | 1,079 | 1,449 | 1,874 | 2,612 | 2,141 | 1,097 |
Claims (8)
- 장기간의 위협 발생 데이터를 수집 분석하여 주요 정보 통신 기반 시설에 발생 가능한 위협 상태 집합을 정의하는 단계;상기 위협 발생 데이터의 각 위협별 발생 빈도수와 상기 위협 상태 집합 사이의 매핑을 이용하여 위협 상태 전이 행렬을 산출하는 단계;상기 장기간의 위협 발생 데이터보다 최근의 위협 발생 데이터를 이용하여 상기 위협 상태 집합의 초기 발생 확률을 산출하는 단계; 및상기 위협 상태 전이 행렬과 상기 초기 발생 확률을 이용하여 상기 주요 정보 통신 기반 시설에서 발생 가능한 위협들의 발생 빈도 예측 정보를 생성하는 단계를 포함하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 1 항에 있어서,상기 위협 상태 집합을 정의하는 단계는과거 장기간에 걸쳐 기록된 위협 발생 데이터를 수집하는 단계;상기 위협 발생 데이터로부터 위협을 유형별로 분류하고 각 위협의 주기를 산출하고, 상기 각 위협의 주기를 이용하여 위협 순위를 결정하여 상기 위협 순위에 따른 대표 위협들을 결정하는 단계; 및상기 대표 위협들의 발생 빈도에 대한 범위값들로 구성된 위협 상태 집합을 생성하는 단계를 포함하는 것을 특징으로 하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 2 항에 있어서,상기 위협 상태 집합은하나의 위협이 독립적으로 발생하는 경우 상기 하나의 위협이 가질 수 있는 발생 빈도에 대한 범위값들로 구성되고, 복수의 위협들이 상호 연관되어 발생하는 경우 상기 복수의 위협들의 발생 빈도에 대한 범위값들을 조합한 형태로 구성되는 것을 특징으로 하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 1 항에 있어서,상기 위협 상태 전이 행렬을 산출하는 단계는상기 위협 발생 데이터의 각 위협별 발생 빈도수와 상기 위협 상태 집합을 서로 매핑하여 위협 상태들을 열거하는 단계;상기 열거된 위협 상태들 중 하나의 위협 상태에서 다른 위협 상태로 전이하는 횟수를 산출하고, 상기 전이하는 횟수를 이용하여 위협 상태 전이 행렬을 산출하는 단계를 포함하는 것을 특징으로 하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 1 항에 있어서,상기 초기 발생 확률을 산출하는 단계는상기 장기간의 위협 발생 데이터보다 최근의 위협 발생 데이터로부터 각 위협 상태별 최근 발생 빈도를 산출하는 단계; 및상기 각 위협 상태별 최근 발생 빈도로부터 초기 발생 확률의 총 합이 1이 되도록하는 상기 위협 상태 집합의 초기 발생 확률을 산출하는 단계를 포함하는 것을 특징으로 하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 1 항에 있어서,상기 위협들의 발생 빈도 예측 정보를 생성하는 단계는상기 위협 상태 전이 행렬과 상기 초기 발생 확률을 곱하여 피해 파급 확률을 연산하는 단계; 및상기 피해 파급 확률 및 상기 각 위협 상태의 평균값을 곱하여 발생 가능한 위협들의 발생 빈도 예측 정보를 생성하는 단계를 포함하는 것을 특징으로 하는 마코프 프로세스 기반의 피해 산정 방법.
- 제 1 항 내지 제 6 항 중 어느 한 항의 방법을 컴퓨터에서 실행시키기 위한 프로그램을 기록한 컴퓨터로 읽을 수 있는 기록매체.
- 장기간의 위협 발생 데이터를 수집 분석하여 주요 정보 통신 기반 시설에 발생 가능한 위협 상태 집합을 정의하는 위협 정의부;상기 위협 발생 데이터의 각 위협별 발생 빈도수와 상기 위협 상태 집합 사 이의 매핑을 이용하여 위협 상태 전이 행렬을 산출하는 행렬 산출부;상기 장기간의 위협 발생 데이터보다 최근의 위협 발생 데이터를 이용하여 상기 위협 상태 집합의 초기 발생 확률을 산출하는 초기값 산출부; 및상기 위협 상태 전이 행렬과 상기 초기 발생 확률을 이용하여 상기 주요 정보 통신 기반 시설에서 발생 가능한 위협들의 발생 빈도 예측 정보를 생성하는 위협 예측부를 포함하는 마코프 프로세스 기반의 피해 산정 장치.
Priority Applications (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| KR1020060066832A KR100729151B1 (ko) | 2006-07-18 | 2006-07-18 | 마코프 프로세스 기반의 피해 산정 방법, 그 기록 매체 및그 장치 |
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| KR1020060066832A KR100729151B1 (ko) | 2006-07-18 | 2006-07-18 | 마코프 프로세스 기반의 피해 산정 방법, 그 기록 매체 및그 장치 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| KR100729151B1 true KR100729151B1 (ko) | 2007-06-19 |
Family
ID=38372598
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| KR1020060066832A Expired - Fee Related KR100729151B1 (ko) | 2006-07-18 | 2006-07-18 | 마코프 프로세스 기반의 피해 산정 방법, 그 기록 매체 및그 장치 |
Country Status (1)
| Country | Link |
|---|---|
| KR (1) | KR100729151B1 (ko) |
Cited By (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR101095878B1 (ko) | 2009-10-21 | 2011-12-21 | 한신대학교 산학협력단 | 은닉마르코프모델을 이용한 에스아이피 프로토콜 서비스 거부 공격 탐지 및 차단 시스템 및 방법 |
| CN105939319A (zh) * | 2015-11-25 | 2016-09-14 | 北京匡恩网络科技有限责任公司 | 一种基于马尔科夫链模拟的网络安全分析方法 |
| CN113435794A (zh) * | 2021-08-26 | 2021-09-24 | 山东大拇指喷雾设备有限公司 | 一种基于图像处理的喷嘴铸件后处理智能监测方法 |
| US20210318944A1 (en) * | 2020-04-13 | 2021-10-14 | UiPath, Inc. | Influence analysis of processes for reducing undesirable behavior |
| CN114095232A (zh) * | 2021-11-16 | 2022-02-25 | 国网上海市电力公司 | 基于隐马尔可夫的电力信息系统动态威胁定量分析方法 |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20040011866A (ko) * | 2002-07-31 | 2004-02-11 | 컨설팅하우스 주식회사 | 정보보안 위험 지수 시스템 및 그 방법 |
| KR20040011858A (ko) * | 2002-07-31 | 2004-02-11 | 컨설팅하우스 주식회사 | 실시간 정보보안 위험분석 시스템 및 그 방법 |
| KR20040012285A (ko) * | 2002-08-02 | 2004-02-11 | 한국정보보호진흥원 | 은닉 마르코프 모델을 이용한 비정상행위 침입탐지 시스템및 방법 |
-
2006
- 2006-07-18 KR KR1020060066832A patent/KR100729151B1/ko not_active Expired - Fee Related
Patent Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20040011866A (ko) * | 2002-07-31 | 2004-02-11 | 컨설팅하우스 주식회사 | 정보보안 위험 지수 시스템 및 그 방법 |
| KR20040011858A (ko) * | 2002-07-31 | 2004-02-11 | 컨설팅하우스 주식회사 | 실시간 정보보안 위험분석 시스템 및 그 방법 |
| KR20040012285A (ko) * | 2002-08-02 | 2004-02-11 | 한국정보보호진흥원 | 은닉 마르코프 모델을 이용한 비정상행위 침입탐지 시스템및 방법 |
Cited By (6)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR101095878B1 (ko) | 2009-10-21 | 2011-12-21 | 한신대학교 산학협력단 | 은닉마르코프모델을 이용한 에스아이피 프로토콜 서비스 거부 공격 탐지 및 차단 시스템 및 방법 |
| CN105939319A (zh) * | 2015-11-25 | 2016-09-14 | 北京匡恩网络科技有限责任公司 | 一种基于马尔科夫链模拟的网络安全分析方法 |
| US20210318944A1 (en) * | 2020-04-13 | 2021-10-14 | UiPath, Inc. | Influence analysis of processes for reducing undesirable behavior |
| WO2021211158A1 (en) * | 2020-04-13 | 2021-10-21 | UiPath, Inc. | Influence analysis of processes for reducing undesirable behavior |
| CN113435794A (zh) * | 2021-08-26 | 2021-09-24 | 山东大拇指喷雾设备有限公司 | 一种基于图像处理的喷嘴铸件后处理智能监测方法 |
| CN114095232A (zh) * | 2021-11-16 | 2022-02-25 | 国网上海市电力公司 | 基于隐马尔可夫的电力信息系统动态威胁定量分析方法 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US12500938B2 (en) | Dynamic cybersecurity scoring and operational risk reduction assessment | |
| US12058166B2 (en) | System and method for electronic risk analysis and remediation using network monitored sensors and actionable feedback methodologies for operational resilience | |
| US10757127B2 (en) | Probabilistic model for cyber risk forecasting | |
| US11347867B2 (en) | Methods and apparatuses to evaluate cyber security risk by establishing a probability of a cyber-attack being successful | |
| CN113542279B (zh) | 一种网络安全风险评估方法、系统及装置 | |
| CN107204876B (zh) | 一种网络安全风险评估方法 | |
| EP3211854B1 (en) | Cyber security | |
| US10419466B2 (en) | Cyber security using a model of normal behavior for a group of entities | |
| US8732840B2 (en) | Incident triage engine | |
| US9544321B2 (en) | Anomaly detection using adaptive behavioral profiles | |
| Gonzalez Granadillo et al. | Individual countermeasure selection based on the return on response investment index | |
| WO2010136787A1 (en) | Assessing threat to at least one computer network | |
| Singh et al. | Information security assessment by quantifying risk level of network vulnerabilities | |
| WO2016109608A1 (en) | System for cyber insurance policy including cyber risk assessment/management service | |
| US20190325451A1 (en) | Information security system with risk assessment based on multi-level aggregations of risk predictors | |
| Ashiku et al. | Agent based cybersecurity model for business entity risk assessment | |
| Enoch et al. | Automated security investment analysis of dynamic networks | |
| CN110347566A (zh) | 用于对注册风控模型进行效能评估的方法及装置 | |
| CN114726623A (zh) | 一种高级威胁攻击评估方法、装置、电子设备及存储介质 | |
| Rafaiani et al. | A functional approach to cyber risk assessment | |
| Das et al. | i-HOPE framework for predicting cyber breaches: a logit approach | |
| Khan et al. | Cyber security quantification model | |
| KR100922363B1 (ko) | 사이버 기상 예측을 위한 악성 코드 분석 장치, 그 방법 및이를 기록한 기록매체 | |
| Gonzalez‐Granadillo et al. | Hypergraph‐driven mitigation of cyberattacks | |
| Wang et al. | Improvements of attack-defense trees for threat analysis |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| A201 | Request for examination | ||
| PA0109 | Patent application |
St.27 status event code: A-0-1-A10-A12-nap-PA0109 |
|
| PA0201 | Request for examination |
St.27 status event code: A-1-2-D10-D11-exm-PA0201 |
|
| PN2301 | Change of applicant |
St.27 status event code: A-3-3-R10-R13-asn-PN2301 St.27 status event code: A-3-3-R10-R11-asn-PN2301 |
|
| E701 | Decision to grant or registration of patent right | ||
| PE0701 | Decision of registration |
St.27 status event code: A-1-2-D10-D22-exm-PE0701 |
|
| GRNT | Written decision to grant | ||
| PR0701 | Registration of establishment |
St.27 status event code: A-2-4-F10-F11-exm-PR0701 |
|
| PR1002 | Payment of registration fee |
St.27 status event code: A-2-2-U10-U11-oth-PR1002 Fee payment year number: 1 |
|
| PG1601 | Publication of registration |
St.27 status event code: A-4-4-Q10-Q13-nap-PG1601 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| PN2301 | Change of applicant |
St.27 status event code: A-5-5-R10-R13-asn-PN2301 St.27 status event code: A-5-5-R10-R11-asn-PN2301 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 4 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 5 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 6 |
|
| FPAY | Annual fee payment |
Payment date: 20130405 Year of fee payment: 7 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 7 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
| FPAY | Annual fee payment |
Payment date: 20140325 Year of fee payment: 8 |
|
| PR1001 | Payment of annual fee |
St.27 status event code: A-4-4-U10-U11-oth-PR1001 Fee payment year number: 8 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |
|
| LAPS | Lapse due to unpaid annual fee | ||
| PC1903 | Unpaid annual fee |
St.27 status event code: A-4-4-U10-U13-oth-PC1903 Not in force date: 20150612 Payment event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE |
|
| PC1903 | Unpaid annual fee |
St.27 status event code: N-4-6-H10-H13-oth-PC1903 Ip right cessation event data comment text: Termination Category : DEFAULT_OF_REGISTRATION_FEE Not in force date: 20150612 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| P22-X000 | Classification modified |
St.27 status event code: A-4-4-P10-P22-nap-X000 |
|
| R18-X000 | Changes to party contact information recorded |
St.27 status event code: A-5-5-R10-R18-oth-X000 |














