论文标题

基于网络动态的学术协作网络的脆弱性研究

A Vulnerability Study on Academic Collaboration Networks Based on Network Dynamics

论文作者

Gutiérrez-Fandiño, Asier, Armengol-Estapé, Jordi, Villegas, Marta

论文摘要

在同一机构工作的研究人员使用电子邮件作为主要通信工具。电子邮件可能是研究机构最富有成果的攻击媒介之一,因为它们还包含访问所有帐户的访问,从而可以访问所有私人信息。我们提出了一种根据安全研究机构的通信网络进行分析的方法。我们首先获得了机构的通信网络以及一种分析可能违反收集电子邮件的方法。我们下载了4个不同的研究中心的网络,三个来自西班牙,一个来自葡萄牙。然后,我们对易感暴露感染的(SEIR)复杂网络动力学模型进行了模拟,以分析网络的脆弱性。超过一半的节点有一个以上的安全漏洞,我们的仿真结果表明,超过90%的网络节点是脆弱的。可以使用此方法来增强研究中心的安全性,并可以使电子邮件帐户使用安全性了解。它可能会在通信安全方面开设新的研究线。最后,我们表明,由于保密原因,我们用于获得通信网络的资料不应提供我们能够收集的信息。

Researchers that work for the same institution use their email as the main communication tool. Email can be one of the most fruitful attack vectors of research institutions as they also contain access to all accounts and thus to all private information. We propose an approach for analyzing in terms of security research institutions' communication networks. We first obtained institutions' communication networks as well as a method to analyze possible breaches of collected emails. We downloaded the network of 4 different research centers, three from Spain and one from Portugal. We then ran simulations of Susceptible-Exposed-Infected-Recovered (SEIR) complex network dynamics model for analyzing the vulnerability of the network. More than half of the nodes have more than one security breach, and our simulation results show that more than 90\% of the networks' nodes are vulnerable. This method can be employed for enhancing security of research centers and can make email accounts' use security-aware. It may additionally open new research lines in communication security. Finally, we manifest that, due to confidentiality reasons, the sources we utilized for obtaining communication networks should not be providing the information that we were able to gather.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源