Informace o publikaci

The Evolution of the CRUSOE Toolset: Enhancing Decision Support in Network Security Management

Logo poskytovatele
Autoři

HUSÁK Martin SADLEK Lukáš HESKO Martin ŠEBELA Vít ŠPAČEK Stanislav

Rok publikování 2024
Druh Článek ve sborníku
Konference 2024 20th International Conference on Network and Service Management (CNSM)
Fakulta / Pracoviště MU

Ústav výpočetní techniky

Citace
www
Doi http://dx.doi.org/10.23919/CNSM62983.2024.10814288
Klíčová slova decision support;network security management;incident response;orchestration;automation
Přiložené soubory
Popis This demo paper presents the recent development of the CRUSOE toolset. CRUSOE enables cyber situational awareness and provides decision support for network security management. The first public version from 2021 used a combination of active and passive network monitoring to enumerate cyber assets and discover their vulnerabilities, visualize the collected data in a dashboard, conduct a risk assessment to recommend the most resilient infrastructure configuration, and facilitate attack mitigation. It also used novel approaches, such as a graph database for storing the data on cyber assets, which essentially became a knowledge graph for network security management. In the recent development, we managed to automate the deployment of CRUSOE via Ansible and Docker. Further, we implemented additional recommender systems and attack impact assessment capabilities and their visualizations. Finally, several sample datasets were created to facilitate the demonstration of the toolset and to enable testing it without one's data.
Související projekty:

Používáte starou verzi internetového prohlížeče. Doporučujeme aktualizovat Váš prohlížeč na nejnovější verzi.

Další info