摘要
随着互联网的飞速发展,计算机安全事件的出现愈来愈频繁,愈来愈严重,计算机应急响应受到广泛关注。计算机安全事件分类方法的研究对于计算机应急响应体系的建设具有重要的意义。首先报告了计算机安全事件分类方法相关研究的现状。而后从计算机安全事件应急响应组的工作实践出发,提出计算机网络安全和计算机网络安全事件的形式化模型,并在此形式化模型的基础上,提出计算机安全事件的描述方法和分类方法。最后给出了两个具体的应用实例。
Security incidents are becoming more common and more serious with the flying development of Internet. There is an increasing need for taxonomy of incident to facilitate for incident reporting, incident handling, incident statistic, incident analysis and collaboration among Computer Security Incident Response Teams (CSIRT). The previous researches on the taxonomy of computer security incident are summarized firstly, the description method and taxonomy of security incident are then presented based on the formal model of network security and security incident.And two examples using the proposed taxonomy of security incident are given in the end.
出处
《中山大学学报(自然科学版)》
CAS
CSCD
北大核心
2005年第B06期115-118,共4页
Acta Scientiarum Naturalium Universitatis Sunyatseni
基金
国家自然科学基金资助项目(60203004)
中山大学青年教师科研启动基金资助项目(2004-35000-1131034)
关键词
计算机安全事件
安全事件响应
分类法
computer security incident
computer security incident response
taxonomy