Integrating Network and Attack Graphs for Service-Centric Impact Analysis
Joni Herttuainen, Vesa Kuikka, Kimmo K. Kaski

TL;DR
This paper introduces a probabilistic approach to model, visualize, and analyze cyber threats and attack impacts across enterprise networks, focusing on service-level propagation and mitigation strategies.
Contribution
It presents a novel methodology combining network and attack graphs with probabilistic analysis to evaluate attack scenarios and inform security decisions.
Findings
Effective attack propagation analysis across service layers
Enhanced detection of early attack spread within microservices
Support for developing targeted mitigation strategies
Abstract
We present a novel methodology for modelling, visualising, and analysing cyber threats, attack paths, as well as their impact on user services in enterprise or infrastructure networks of digital devices and services they provide. Using probabilistic methods to track the propagation of an attack through attack graphs, via the service or application layers, and on physical communication networks, our model enables us to analyse cyber attacks at different levels of detail. Understanding the propagation of an attack within a service among microservices and its spread between different services or application servers could help detect and mitigate it early. We demonstrate that this network-based influence spreading modelling approach enables the evaluation of diverse attack scenarios and the development of protection and mitigation measures, taking into account the criticality of services…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInformation and Cyber Security · Software System Performance and Reliability · Network Security and Intrusion Detection
