MulVAL swMATH ID: 17743 Software Authors: Ou, X.; Govindavajhala, S.; Appel, A.W. Description: MulVAL: A Logic-based Network Security Analyzer. To determine the security impact software vulnerabilities have on a particular network, one must consider interactions among multiple network elements. For a vulnerability analysis tool to be useful in practice, two features are crucial. First, the model used in the analysis must be able to automatically integrate formal vulnerability specifications from the bug-reporting community. Second, the analysis must be able to scale to networks with thousands of machines. We show how to achieve these two goals by presenting MulVAL, an end-to-end framework and reasoning system that conducts multihost, multistage vulnerability analysis on a network. MulVAL adopts Datalog as the modeling language for the elements in the analysis (bug specification, configuration description, reasoning rules, operating-system permission and privilege model, etc.). We easily leverage existing vulnerability-database and scanning tools by expressing their output in Datalog and feeding it to our MulVAL reasoning engine. Once the information is collected, the analysis can be performed in seconds for networks with thousands of machines. We implemented our framework on the Red Hat Linux platform. Our framework can reason about 84 Homepage: http://static.usenix.org/publications/library/proceedings/sec05/tech/full_papers/ou/ou_html/ Related Software: ADEPTS; Datalog; Flix; SHARPE; SPSS; CyGraph; TCPDUMP; ADTool; AttackTree; SecurITree; SeaMonster; RRE; bnlearn Cited in: 8 Documents all top 5 Cited by 27 Authors 2 Hu, Hao 1 Baier, Christel 1 Bal, Jay 1 Chang, Chaowen 1 Cheng, Feng 1 Debattista, Kurt 1 Dubslaff, Clemens 1 Hermanns, Holger 1 Käfer, Nikolai 1 Karp, Joshua 1 Kordy, Barbara 1 Lallie, Harjinder Singh 1 Leng, Qiang 1 Liu, Jing 1 Liu, Yuling 1 Meinel, Christoph 1 Piètre-Cambacédès, Ludovic 1 Roschke, Sebastian 1 Scholz, Bernhard 1 Schuppenies, Robert 1 Schweitzer, Patrick 1 Tan, Jinglei 1 Yang, Yingjie 1 Zenitani, Kengo 1 Zhang, Hongqi 1 Zhao, David 1 Zreika, Abdul Cited in 3 Serials 2 Mathematical Problems in Engineering 2 Computer Science Review 1 Information Sciences all top 5 Cited in 6 Fields 7 Computer science (68-XX) 3 Information and communication theory, circuits (94-XX) 1 Combinatorics (05-XX) 1 Probability theory and stochastic processes (60-XX) 1 Statistics (62-XX) 1 Game theory, economics, finance, and other social and behavioral sciences (91-XX) Citations by Year