信息网络安全 ›› 2025, Vol. 25 ›› Issue (10): 1493-1505.doi: 10.3969/j.issn.1671-1122.2025.10.002

• 综述论文 • 上一篇    下一篇

网络韧性评估框架和方法综述

张大龙1,2, 丁曙光2, 韩志龙1, 付守利1(), 唐志青1,2, 石磊1   

  1. 1.郑州大学网络空间安全学院,郑州 450001
    2.嵩山实验室,郑州 450000
  • 收稿日期:2025-05-30 出版日期:2025-10-10 发布日期:2025-11-07
  • 通讯作者: 付守利 E-mail:fusl@zzu.edu.cn
  • 作者简介:张大龙(1976—),男,河南,教授,博士,CCF会员,主要研究方向为分布式网络、网络韧性工程|丁曙光(1991—),男,河南,高级工程师,博士,主要研究方向为网络韧性测评、机器学习和自动驾驶|韩志龙(2000—),男,河北,硕士研究生,主要研究方向为网络韧性测评|付守利(1978—),男,河南,硕士,主要研究方向为计算机应用和网络安全|唐志青(1990—),男,河南,助理研究员,博士,CCF会员,主要研究方向为网络韧性测评、无线通信物理层安全|石磊(1967—),男,河南,教授,博士,CCF高级会员,主要研究方向为网络与信息安全、数据科学与智能计算
  • 基金资助:
    河南省重大科技专项(241110210100)

Review of Cyber Resilience Assessment Framework and Methods

ZHANG Dalong1,2, DING Shuguang2, HAN Zhilong1, FU Shouli1(), TANG Zhiqing1,2, SHI Lei1   

  1. 1. School of Cyber Science and Engineering, Zhengzhou University, Zhengzhou 450001, China
    2. Songshan Laboratory, Zhengzhou 450000, China
  • Received:2025-05-30 Online:2025-10-10 Published:2025-11-07
  • Contact: FU Shouli E-mail:fusl@zzu.edu.cn

摘要:

网络韧性强调系统遭受灾难或攻击时的感知、抵御、恢复和适应能力。构建韧性的网络空间,不仅可以降低安全失陷的概率,而且能够在安全失陷后减轻其造成的危害,并快速恢复运行。提高网络韧性的首要任务是对网络韧性进行评估。文章先对网络韧性的概念及网络韧性评估需求进行简要介绍,再从评估框架和评估方法两个方面对现有研究进行系统梳理。在评估框架方面,文章提出一种基于面向过程和面向结果的分类方法,对现有评估框架进行分类总结;在评估方法方面,从定性、定量角度对现有方法进行综述分析。此外,文章阐述了各类框架和方法的优势及其面临的挑战,对现有框架和方法的应用以及新型评估框架和方法的研究具有重要的指导意义。最后,文章总结并探讨了网络韧性评估的未来研究方向。

关键词: 网络韧性评估, 面向过程评估, 面向结果评估, 曲线下面积, 网络拓扑

Abstract:

Cyber resilience emphasizes the system’s ability of perception, resistance, recovery, and adaptation when facing disasters or attacks. Constructing a resilient cyberspace can reduce security collapses and meanwhile mitigate the damage caused by security collapses and recover quickly from them, thereby enhancing the security resilience of cyberspace. The primary task in developing cyber resilience is to assess cyber resilience. This paper first briefly introduced the concept of cyber resilience and the need for resilience assessment. Subsequently, we reviewed the existing research from two aspects: cyber resilience assessment frameworks and assessment methods. For assessment frameworks, a classification method for existing frameworks from the perspective of process-oriented and result-oriented was proposed. For assessment methods, an introduction to existing methods from qualitative and quantitative perspective was provided. Moreover, this paper furthermore discussed the advantages and challenges associated with each type of framework and method. This analysis was important for guiding the application of existing frameworks and methods, as well as for researching new assessment frameworks and methods. Finally, we summarized and discuss the future directions of cyber resilience assessment.

Key words: cyber resilience assessment, process-oriented assessment, result-oriented assessment, area under the curve, network topology

中图分类号: