Visualizing attack graphs, reachability, and trust relationships with NAVIGATOR

  • Authors:
  • Matthew Chu;Kyle Ingols;Richard Lippmann;Seth Webster;Stephen Boyer

  • Affiliations:
  • MIT Lincoln Laboratory, Lexington, MA;MIT Lincoln Laboratory, Lexington, MA;MIT Lincoln Laboratory, Lexington, MA;MIT Lincoln Laboratory, Lexington, MA;MIT Lincoln Laboratory, Lexington, MA

  • Venue:
  • Proceedings of the Seventh International Symposium on Visualization for Cyber Security
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

A new tool named NAVIGATOR (Network Asset VIsualization: Graphs, ATtacks, Operational Recommendations) adds significant capabilities to earlier work in attack graph visualization. Using NAVIGATOR, users can visualize the effect of server-side, client-side, credential-based, and trust-based attacks. By varying the attacker model, NAVIGATOR can show the current state of the network as well as hypothetical future situations, allowing for advance planning. Furthermore, NAVIGATOR explicitly shows network topology, infrastructure devices, and host-level data while still conveying situational awareness of the network as a whole. This tool is implemented in Java and uses an existing C++ engine for reachability and attack graph calculations.