论文标题
评估基于容器的网络范围中的脆弱性可重复性
Evaluation of vulnerability reproducibility in container-based Cyber Range
论文作者
论文摘要
网络范围是一种实用且高度教育的信息安全锻炼系统,由于实施和维护它的成本很高,因此很难在教育机构中实施。因此,需要以低成本采用和维护的网络范围。最近,容器类型虚拟化正在引起人们的注意,因为它可以创建高速和高密度的运动环境。但是,现有的研究尚未清楚地表明容器虚拟化在建筑锻炼环境中的优势。而且尚不清楚足够的脆弱性是否可再现,这是在网络范围内进行事件方案所必需的。在本文中,我们将容器虚拟化与现有虚拟化类型进行了比较,并确认可以将内存,CPU和存储消耗的量减少到常规虚拟化方法的小于1/10。我们还比较和验证常见锻炼方案中使用的漏洞的可重复性,并确认99.3%的脆弱性是可重复的。基于容器的网络范围可以用作替代现有方法的新标准。
A cyber range, a practical and highly educational information security exercise system, is difficult to implement in educational institutions because of the high cost of implementing and maintaining it. Therefore, there is a need for a cyber range that can be adopted and maintained at a low cost. Recently, container type virtualization is gaining attention as it can create a high-speed and high-density exercise environment. However, existing researches have not clearly shown the advantages of container virtualization for building exercise environments. And it is not clear whether the sufficient vulnerabilities are reproducible, which is required to conduct incident scenarios in cyber range. In this paper, we compare container virtualization with existing virtualization type and confirm that the amount of memory, CPU, and storage consumption can be reduced to less than 1/10 of the conventional virtualization methods. We also compare and verify the reproducibility of the vulnerabilities used in common exercise scenarios and confirm that 99.3% of the vulnerabilities are reproducible. The container-based cyber range can be used as a new standard to replace existing methods.