Article(id=1149743086575726960, tenantId=1146029695717560320, journalId=1146031787341344770, issueId=1149743083069288795, articleNumber=1003-3033(2024)06-0157-07, orderNo=null, doi=10.16265/j.cnki.issn1003-3033.2024.06.0074, pmid=null, cstr=null, oa=null, hot=null, price=null, onlineType=0, articleFormat=0, articleType=null, articleTypeStr=null, receivedDate=1702656000000, receivedDateStr=2023-12-16, revisedDate=1710950400000, revisedDateStr=2024-03-21, acceptedDate=null, acceptedDateStr=null, onlineDate=1752049713033, onlineDateStr=2025-07-09, pubDate=1719504000000, pubDateStr=2024-06-28, doiRegisterDate=null, doiRegisterDateStr=null, onlineIssueDate=1752049713033, onlineIssueDateStr=2025-07-09, onlineJustAcceptDate=null, onlineJustAcceptDateStr=null, onlineFirstDate=null, onlineFirstDateStr=null, sourceXml=null, magXml=null, createTime=1752049713033, creator=13701087609, updateTime=1752049713033, updator=13701087609, issue=Issue{id=1149743083069288795, tenantId=1146029695717560320, journalId=1146031787341344770, year='2024', volume='34', issue='6', pageStart='1', pageEnd='252', issueExtLink='null', onlineDate='null', pubDate='null', beforeIssueId=null, nextIssueId=null, price=null, status=1, issueComplete=1, articleOrder=1, issueType=-1, specialIssue=0, createTime=1752049712197, creator=13701087609, updateTime=1756468919644, updator=13701087609, preIssue=null, nextIssue=null, ext={EN=IssueExt(id=1168278582599098697, tenantId=1146029695717560320, journalId=1146031787341344770, issueId=1149743083069288795, language=EN, specialIssueTitle=, coverIllustrator=, specialIssueEditor=, specialIssueAbout=), CN=IssueExt(id=1168278582599098698, tenantId=1146029695717560320, journalId=1146031787341344770, issueId=1149743083069288795, language=CN, specialIssueTitle=, coverIllustrator=, specialIssueEditor=, specialIssueAbout=)}, issueFiles=null}, startPage=157, endPage=163, ext={EN=ArticleExt(id=1149743086764470644, articleId=1149743086575726960, tenantId=1146029695717560320, journalId=1146031787341344770, language=EN, title=Study on key tactical factors of container security threats based on IPFS-DEMATEL-ISM Method, columnId=1149733269173878863, journalTitle=China Safety Science Journal, columnName=Safety engineering technology, runingTitle=null, highlight=null, articleAbstract=

In order to address the increasingly serious cloud-native container security threats arising from large-scale cloud migration of systems,the ISM method merging IPFS,DEMATEL,and method were proposed to identify the key tactical factors influencing cloud-native container security threats and their hierarchical logical relationships from the security intruder perspective. The findings of this research are as follows: the centrality and causality of the persistence and privilege escalation tactical phases are high,positioning them at the core of the entire cloud-native security threat landscape. Security attacks during these two phases require high-priority attention. Threat attacks during the execution and persistence tactical phases constitute essential factors in cloud-native container security. The threats during the initial access,credential theft,and lateral movement tactical phases have the most direct impact on cloud-native container security. In comparison with traditional and triangular fuzzy sets improved DEMATEL-ISM,our proposed method has better performance in identifying container security-related critical factors.

, correspAuthors=Jun WU, authorNote=null, correspAuthorsNote=null, copyrightStatement=null, copyrightOwner=null, extLink=null, articleAbsUrl=null, sourceXml=null, magXml=null, pdfUrl=null, pdf=null, pdfFileSize=null, pdfExtLink=null, richHtmlUrl=null, mobilePdfUrl=null, reviewReport=null, pdfFirstPage=null, abstractGraph=null, abstractGraphContent=null, abstractVideo=null, citation=null, cebUrl=null, magXmlContent=null, mapNumber=null, authorCompany=null, fund=null, authors=null, authorsList=Jianqiao SHENG, Lifan ZENG, Yuan FANG, Jun WU), CN=ArticleExt(id=1149743098512716517, articleId=1149743086575726960, tenantId=1146029695717560320, journalId=1146031787341344770, language=CN, title=基于IPFS-DEMATEL-ISM的容器安全威胁关键战术要素研究, columnId=1149733269727526997, journalTitle=中国安全科学学报, columnName=安全工程技术, runingTitle=null, highlight=null, articleAbstract=

为解决电力能源企业“上云”引发的云原生容器安全威胁问题,提出融合区间毕达哥拉斯模糊集(IPFS)、决策试验与评价实验室(DEMATEL)和解释结构模型法(ISM)识别容器安全关键战术要素。首先,基于IPFS提取安全专家对容器入侵威胁战术要素的经验判断,其次,应用DEMATEL和ISM识别容器安全威胁的关键战术要素及要素间的层级拓扑关系。结果表明:持久化和权限提升2个战术阶段的中心度和原因度较高,在整个云原生安全威胁体系中居于核心地位,这2个阶段的安全攻击行为需持高优先级关注;执行和持久化战术阶段的威胁攻击是云原生容器安全的本质要素,初始访问、窃取凭证以及横向移动战术阶段的威胁最直接影响云原生容器安全。研究提出的IPFS-DEMATEL-ISM法相较DEMATEL-ISM和集成三角模糊数的DEMATEL-ISM法在识别容器安全威胁关键战术要素时具有更好区分度和简约解释性。

, correspAuthors=吴俊, authorNote=null, correspAuthorsNote=
**吴 俊(1978—),男,安徽合肥人,博士,教授,主要从事前沿技术创新与大数据分析等方面的研究。E-mail:
, copyrightStatement=null, copyrightOwner=null, extLink=null, articleAbsUrl=null, sourceXml=k3xrNdbnzTwuHIiCF97oCg==, magXml=KrvRwXJpdHEH777xEpHkkg==, pdfUrl=null, pdf=d4HJJ411BTwWJBmye5pH0A==, pdfFileSize=null, pdfExtLink=null, richHtmlUrl=null, mobilePdfUrl=null, reviewReport=null, pdfFirstPage=null, abstractGraph=null, abstractGraphContent=null, abstractVideo=null, citation=null, cebUrl=null, magXmlContent=cLwvxbOMV3oRS+AAmNP4yA==, mapNumber=null, authorCompany=null, fund=null, authors=

盛剑桥 (1992—),男,安徽合肥人,硕士,工程师,主要从事电网信息系统安全研究等方面的研究。E-mail:

方 圆 高级工程师

, authorsList=盛剑桥, 曾丽帆, 方圆, 吴俊)}, authors=[Author(id=1168181624005993196, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, orderNo=0, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=cambridgeace@sina.com, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1168181624073102062, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624005993196, language=EN, stringName=Jianqiao SHENG, firstName=Jianqiao, middleName=null, lastName=SHENG, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=1, address=1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1168181624127628015, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624005993196, language=CN, stringName=盛剑桥, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=1, address=1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041, bio={"img":"7XpqyFRtd+GrheLQeWf54A==","content":"

盛剑桥 (1992—),男,安徽合肥人,硕士,工程师,主要从事电网信息系统安全研究等方面的研究。E-mail:

"}, bioImg=7XpqyFRtd+GrheLQeWf54A==, bioContent=

盛剑桥 (1992—),男,安徽合肥人,硕士,工程师,主要从事电网信息系统安全研究等方面的研究。E-mail:

, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1168181623846609637, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=1, ext=[AuthorCompanyExt(id=1168181623854998246, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China), AuthorCompanyExt(id=1168181623863386855, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041)])]), Author(id=1168181624182153969, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, orderNo=1, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=null, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1168181624245068531, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624182153969, language=EN, stringName=Lifan ZENG, firstName=Lifan, middleName=null, lastName=ZENG, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=2, address=2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1168181624295400180, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624182153969, language=CN, stringName=曾丽帆, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=2, address=2 北京邮电大学 经济管理学院,北京 100876, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1168181623930495720, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=2, ext=[AuthorCompanyExt(id=1168181623938884329, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China), AuthorCompanyExt(id=1168181623947272938, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 北京邮电大学 经济管理学院,北京 100876)])]), Author(id=1168181624383480566, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, orderNo=2, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=null, emailSecond=null, emailThird=null, correspondingAuthor=0, authorType=1, ext={EN=AuthorExt(id=1168181624505115384, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624383480566, language=EN, stringName=Yuan FANG, firstName=Yuan, middleName=null, lastName=FANG, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=1, address=1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1168181624555447033, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624383480566, language=CN, stringName=方圆, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=1, address=1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041, bio={"content":"

方 圆 高级工程师

"}, bioImg=null, bioContent=

方 圆 高级工程师

, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1168181623846609637, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=1, ext=[AuthorCompanyExt(id=1168181623854998246, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China), AuthorCompanyExt(id=1168181623863386855, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041)])]), Author(id=1168181624614167291, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, orderNo=3, firstName=null, middleName=null, lastName=null, nameCn=null, orcid=null, stid=null, country=null, authorPic=null, dead=0, email=wujun1127@126.com, emailSecond=null, emailThird=null, correspondingAuthor=1, authorType=1, ext={EN=AuthorExt(id=1168181624698053373, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624614167291, language=EN, stringName=Jun WU, firstName=Jun, middleName=null, lastName=WU, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=2, **, address=2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null), CN=AuthorExt(id=1168181624752579326, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, authorId=1168181624614167291, language=CN, stringName=吴俊, firstName=null, middleName=null, lastName=null, prefix=null, suffix=null, authorComment=null, nameInitials=null, affiliation=null, department=null, xref=2, **, address=2 北京邮电大学 经济管理学院,北京 100876, bio=null, bioImg=null, bioContent=null, aboutCorrespAuthor=null)}, companyList=[AuthorCompany(id=1168181623930495720, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=2, ext=[AuthorCompanyExt(id=1168181623938884329, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China), AuthorCompanyExt(id=1168181623947272938, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 北京邮电大学 经济管理学院,北京 100876)])])], keywords=[Keyword(id=1168181624890991359, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, orderNo=1, keyword=interval pythagorean fuzzy set (IPFS)), Keyword(id=1168181624958100224, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, orderNo=2, keyword=decision-making trial and evaluation laboratory (DEMATEL)), Keyword(id=1168181625025209089, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, orderNo=3, keyword=interpretative structural modeling (ISM)), Keyword(id=1168181625079735042, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, orderNo=4, keyword=container security threats), Keyword(id=1168181625117483779, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, orderNo=5, keyword=critical tactical factors), Keyword(id=1168181625167815428, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, orderNo=1, keyword=区间毕达哥拉斯模糊集(IPFS)), Keyword(id=1168181625260090117, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, orderNo=2, keyword=决策试验与评价实验室(DEMATEL)), Keyword(id=1168181625314616070, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, orderNo=3, keyword=解释结构模型(ISM)), Keyword(id=1168181625360753415, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, orderNo=4, keyword=容器安全威胁), Keyword(id=1168181625453028104, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, orderNo=5, keyword=关键战术要素)], refs=[Reference(id=1168181627516625700, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=null, volume=null, issue=null, pageStart=null, pageEnd=null, url=https://www.gov.cn/zhengce/zhengceku/2020-04/10/content_5501163.htm, language=null, rfNumber=[1], rfOrder=0, authorNames=null, journalName=null, refType=null, unstructuredReference=国家发展改革委, 中央网信办. 关于推进“上云用数赋智”行动培育新经济发展实施方案[EB/OL].[2020-04-07]. https://www.gov.cn/zhengce/zhengceku/2020-04/10/content_5501163.htm., articleTitle=关于推进“上云用数赋智”行动培育新经济发展实施方案, refAbstract=null), Reference(id=1168181627575345957, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=null, volume=null, issue=null, pageStart=null, pageEnd=null, url=https://www.gartner.com/en/documents/3985796, language=null, rfNumber=[2], rfOrder=1, authorNames=null, journalName=null, refType=null, unstructuredReference=Gartner Research. Forecast analysis: container management (software and services),worldwide[EB/OL].[2020-05-29]. https://www.gartner.com/en/documents/3985796., articleTitle=Forecast analysis: container management (software and services),worldwide, refAbstract=null), Reference(id=1168181627667620646, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=23, issue=4, pageStart=1, pageEnd=27, url=null, language=null, rfNumber=[3], rfOrder=2, authorNames=RAHAMAN M S, ISLAM A, CERNY T, journalName=Sensors, refType=null, unstructuredReference=RAHAMAN M S, ISLAM A, CERNY T, et al. Static-analysis-based solutions to security challenges in cloud-native systems: systematic mapping study[J]. Sensors, 2023, 23(4):1-27., articleTitle=Static-analysis-based solutions to security challenges in cloud-native systems: systematic mapping study, refAbstract=null), Reference(id=1168181627743118119, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2018, volume=9, issue=12, pageStart=105, pageEnd=113, url=null, language=null, rfNumber=[4], rfOrder=3, authorNames=胡俊, 李漫, journalName=网络空间安全, refType=null, unstructuredReference=胡俊, 李漫. 容器安全解决方案探讨与研究[J]. 网络空间安全, 2018, 9(12):105-113., articleTitle=容器安全解决方案探讨与研究, refAbstract=null), Reference(id=1168181627797644072, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2018, volume=9, issue=12, pageStart=105, pageEnd=113, url=null, language=null, rfNumber=[4], rfOrder=4, authorNames=HU Jun, LI Man, journalName=Cyberspace Security, refType=null, unstructuredReference=HU Jun, LI Man. Discussion and research on container security solutions[J]. Cyberspace Security, 2018, 9(12):105-113., articleTitle=Discussion and research on container security solutions, refAbstract=null), Reference(id=1168181627856364329, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=33, issue=3, pageStart=73, pageEnd=78, url=null, language=null, rfNumber=[5], rfOrder=5, authorNames=任兰芳, 庄小君, 付俊, journalName=电信工程技术与标准化, refType=null, unstructuredReference=任兰芳, 庄小君, 付俊. Docker容器安全防护技术研究[J]. 电信工程技术与标准化, 2020, 33(3):73-78., articleTitle=Docker容器安全防护技术研究, refAbstract=null), Reference(id=1168181627910890282, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=33, issue=3, pageStart=73, pageEnd=78, url=null, language=null, rfNumber=[5], rfOrder=6, authorNames=REN Lanfang, ZHUANG Xiaojun, FU Jun, journalName=Telecom Engineering Technics and Standardization, refType=null, unstructuredReference=REN Lanfang, ZHUANG Xiaojun, FU Jun. Technical research of docker container security protection[J]. Telecom Engineering Technics and Standardization, 2020, 33(3):73-78., articleTitle=Technical research of docker container security protection, refAbstract=null), Reference(id=1168181627965416235, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=null, issue=1, pageStart=36, pageEnd=42, url=null, language=null, rfNumber=[6], rfOrder=7, authorNames=杨长茂, 冯超, 谷晓剑, journalName=保密科学技术, refType=null, unstructuredReference=杨长茂, 冯超, 谷晓剑. 云原生中的容器安全防护和实践[J]. 保密科学技术, 2021(1):36-42., articleTitle=云原生中的容器安全防护和实践, refAbstract=null), Reference(id=1168181628019942188, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=null, issue=1, pageStart=29, pageEnd=35, url=null, language=null, rfNumber=[7], rfOrder=8, authorNames=宋胜攀, 刘振慧, 庄东燃, journalName=保密科学技术, refType=null, unstructuredReference=宋胜攀, 刘振慧, 庄东燃. 开源容器技术安全分析[J]. 保密科学技术, 2021(1):29-35., articleTitle=开源容器技术安全分析, refAbstract=null), Reference(id=1168181628082856749, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=20, issue=7, pageStart=85, pageEnd=95, url=null, language=null, rfNumber=[8], rfOrder=9, authorNames=边曼琳, 王利明, journalName=信息网络安全, refType=null, unstructuredReference=边曼琳, 王利明. 云环境下Docker容器隔离脆弱性分析与研究[J]. 信息网络安全, 2020, 20(7):85-95., articleTitle=云环境下Docker容器隔离脆弱性分析与研究, refAbstract=null), Reference(id=1168181628141577006, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=20, issue=7, pageStart=85, pageEnd=95, url=null, language=null, rfNumber=[8], rfOrder=10, authorNames=BIAN Manlin, WANG Liming, journalName=Netinfo Security, refType=null, unstructuredReference=BIAN Manlin, WANG Liming. Analysis and research on vulnerability of docker container isolation in cloud environment[J]. Netinfo Security, 2020, 20(7):85-95., articleTitle=Analysis and research on vulnerability of docker container isolation in cloud environment, refAbstract=null), Reference(id=1168181628200297263, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2022, volume=68, issue=1, pageStart=35, pageEnd=43, url=null, language=null, rfNumber=[9], rfOrder=11, authorNames=邢云龙, 严飞, 刘彦孝, journalName=武汉大学学报:理学版, refType=null, unstructuredReference=邢云龙, 严飞, 刘彦孝, 等. 基于系统调用限制的容器安全防护方案[J]. 武汉大学学报:理学版, 2022, 68(1):35-43., articleTitle=基于系统调用限制的容器安全防护方案, refAbstract=null), Reference(id=1168181628321932080, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2022, volume=68, issue=1, pageStart=35, pageEnd=43, url=null, language=null, rfNumber=[9], rfOrder=12, authorNames=XING Yunlong, YAN Fei, LIU Yanxiao, journalName=Journal of Wuhan University:Natural Science Edition, refType=null, unstructuredReference=XING Yunlong, YAN Fei, LIU Yanxiao, et al. Container security protection scheme based on system call restriction[J]. Journal of Wuhan University:Natural Science Edition, 2022, 68(1):35-43., articleTitle=Container security protection scheme based on system call restriction, refAbstract=null), Reference(id=1168181628380652337, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=44, issue=4, pageStart=50, pageEnd=63, url=null, language=null, rfNumber=[10], rfOrder=13, authorNames=周大成, 陈鸿昶, 何威振, journalName=通信学报, refType=null, unstructuredReference=周大成, 陈鸿昶, 何威振, 等. 基于深度强化学习的微服务多维动态防御策略研究[J]. 通信学报, 2023, 44(4):50-63., articleTitle=基于深度强化学习的微服务多维动态防御策略研究, refAbstract=null), Reference(id=1168181628430983986, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=44, issue=4, pageStart=50, pageEnd=63, url=null, language=null, rfNumber=[10], rfOrder=14, authorNames=ZHOU Dacheng, CHEN Hongchang, HE Weizhen, journalName=Journal on Communications, refType=null, unstructuredReference=ZHOU Dacheng, CHEN Hongchang, HE Weizhen, et al. Research on multidimensional dynamic defense strategy for microservice based on deep reinforcement learning[J]. Journal on Communications, 2023, 44(4):50-63., articleTitle=Research on multidimensional dynamic defense strategy for microservice based on deep reinforcement learning, refAbstract=null), Reference(id=1168181628510675763, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=23, issue=2, pageStart=76, pageEnd=84, url=null, language=null, rfNumber=[11], rfOrder=15, authorNames=夏懿航, 张志龙, 王木子, journalName=信息网络安全, refType=null, unstructuredReference=夏懿航, 张志龙, 王木子, 等. 基于依赖关系的容器供应链脆弱性检测方法[J]. 信息网络安全, 2023, 23(2):76-84., articleTitle=基于依赖关系的容器供应链脆弱性检测方法, refAbstract=null), Reference(id=1168181628602950452, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=23, issue=2, pageStart=76, pageEnd=84, url=null, language=null, rfNumber=[11], rfOrder=16, authorNames=XIA Yihang, ZHANG Zhilong, WANG Muzi, journalName=Netinfo Security, refType=null, unstructuredReference=XIA Yihang, ZHANG Zhilong, WANG Muzi, et al. Dependency-based vulnerability detection method in container supply chain[J]. Netinfo Security, 2023, 23(2):76-84., articleTitle=Dependency-based vulnerability detection method in container supply chain, refAbstract=null), Reference(id=1168181628653282101, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2022, volume=null, issue=8, pageStart=5, pageEnd=6, url=null, language=null, rfNumber=[12], rfOrder=17, authorNames=王海林, 颜颖, 唐旭玥, journalName=网络安全技术与应用, refType=null, unstructuredReference=王海林, 颜颖, 唐旭玥. ATT&CK在安全运营中的应用研究[J]. 网络安全技术与应用, 2022(8):5-6., articleTitle=ATT&CK在安全运营中的应用研究, refAbstract=null), Reference(id=1168181628707808054, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=50, issue=增1, pageStart=710, pageEnd=716, url=null, language=null, rfNumber=[13], rfOrder=18, authorNames=张宇翔, 韩久江, 刘建, journalName=计算机科学, refType=null, unstructuredReference=张宇翔, 韩久江, 刘建, 等. ATT&CK框架下基于事件序列关联的网络高级威胁检测系统[J]. 计算机科学, 2023, 50(增1):710-716., articleTitle=ATT&CK框架下基于事件序列关联的网络高级威胁检测系统, refAbstract=null), Reference(id=1168181628804277047, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=50, issue=S1, pageStart=710, pageEnd=716, url=null, language=null, rfNumber=[13], rfOrder=19, authorNames=ZHANG Yuxiang, HAN Jiujiang, LIU Jian, journalName=Computer Science, refType=null, unstructuredReference=ZHANG Yuxiang, HAN Jiujiang, LIU Jian, et al. Network advanced threat detection system based on event sequence correlation under ATT&CK framework[J]. Computer Science, 2023, 50(S1):710-716., articleTitle=Network advanced threat detection system based on event sequence correlation under ATT&CK framework, refAbstract=null), Reference(id=1168181628850414392, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2013, volume=22, issue=4, pageStart=958, pageEnd=965, url=null, language=null, rfNumber=[14], rfOrder=20, authorNames=YAGER R R, journalName=IEEE Transactions on Fuzzy Systems, refType=null, unstructuredReference=YAGER R R. Pythagorean membership grades in multicriteria decision making[J]. IEEE Transactions on Fuzzy Systems, 2013, 22(4):958-965., articleTitle=Pythagorean membership grades in multicriteria decision making, refAbstract=null), Reference(id=1168181628909134649, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=1986, volume=20, issue=1, pageStart=87, pageEnd=96, url=null, language=null, rfNumber=[15], rfOrder=21, authorNames=ATANASSOV K T, journalName=Fuzzy Sets and Systems, refType=null, unstructuredReference=ATANASSOV K T. Intuitionistic fuzzy sets[J]. Fuzzy Sets and Systems, 1986, 20(1):87-96., articleTitle=Intuitionistic fuzzy sets, refAbstract=null), Reference(id=1168181629026575162, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2016, volume=330, issue=null, pageStart=104, pageEnd=124, url=null, language=null, rfNumber=[16], rfOrder=22, authorNames=ZHANG XiaoLu, journalName=Information Sciences, refType=null, unstructuredReference=ZHANG XiaoLu. Multicriteria Pythagorean fuzzy decision analysis: a hierarchical QUALIFLEX approach with the closeness index-based ranking methods[J]. Information Sciences, 2016, 330:104-124., articleTitle=Multicriteria Pythagorean fuzzy decision analysis: a hierarchical QUALIFLEX approach with the closeness index-based ranking methods, refAbstract=null), Reference(id=1168181629148209979, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=31, issue=7, pageStart=30, pageEnd=37, url=null, language=null, rfNumber=[17], rfOrder=23, authorNames=李广利, 严一知, 刘文琦, journalName=中国安全科学学报, refType=null, unstructuredReference=李广利, 严一知, 刘文琦, 等. 基于DEMATEL-ISM的矿工不安全情绪形成因子研究[J]. 中国安全科学学报, 2021, 31(7):30-37., articleTitle=基于DEMATEL-ISM的矿工不安全情绪形成因子研究, refAbstract=null), Reference(id=1168181629206930236, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=31, issue=7, pageStart=30, pageEnd=37, url=null, language=null, rfNumber=[17], rfOrder=24, authorNames=LI Guangli, YAN Yizhi, LIU Wenqi, journalName=China Safety Science Journal, refType=null, unstructuredReference=LI Guangli, YAN Yizhi, LIU Wenqi, et al. Research on formation factors of miners' unsafe emotions based on DEMATEL-ISM[J]. China Safety Science Journal, 2021, 31(7):30-37., articleTitle=Research on formation factors of miners' unsafe emotions based on DEMATEL-ISM, refAbstract=null), Reference(id=1168181629299204925, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2019, volume=27, issue=7, pageStart=186, pageEnd=194, url=null, language=null, rfNumber=[18], rfOrder=25, authorNames=缪秀梅, 陈烨天, 米传民, journalName=中国管理科学, refType=null, unstructuredReference=缪秀梅, 陈烨天, 米传民. 基于ISM和在线评论的汤山温泉顾客满意度研究[J]. 中国管理科学, 2019, 27(7):186-194., articleTitle=基于ISM和在线评论的汤山温泉顾客满意度研究, refAbstract=null), Reference(id=1168181629357925182, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2019, volume=27, issue=7, pageStart=186, pageEnd=194, url=null, language=null, rfNumber=[18], rfOrder=26, authorNames=MIAO Xiumei, CHEN Yetian, MI Chuanmin, journalName=Chinese Journal of Management Science, refType=null, unstructuredReference=MIAO Xiumei, CHEN Yetian, MI Chuanmin. Study on consumer satisfaction of tangshan hot springs based on ISM and online reviews[J]. Chinese Journal of Management Science, 2019, 27(7):186-194., articleTitle=Study on consumer satisfaction of tangshan hot springs based on ISM and online reviews, refAbstract=null), Reference(id=1168181629504725823, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=41, issue=5, pageStart=195, pageEnd=204, url=null, language=null, rfNumber=[19], rfOrder=27, authorNames=赵希男, 肖彤, journalName=科技管理研究, refType=null, unstructuredReference=赵希男, 肖彤. 基于模糊DEMATEL-ISM方法的员工绿色行为影响因素研究[J]. 科技管理研究, 2021, 41(5):195-204., articleTitle=基于模糊DEMATEL-ISM方法的员工绿色行为影响因素研究, refAbstract=null), Reference(id=1168181629601194816, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2021, volume=41, issue=5, pageStart=195, pageEnd=204, url=null, language=null, rfNumber=[19], rfOrder=28, authorNames=ZHAO Xi'nan, XIAO Tong, journalName=Science and Technology Management Research, refType=null, unstructuredReference=ZHAO Xi'nan, XIAO Tong. Research on factors influencing employee's green behavior based on fuzzy-DEMATEL-ISM method[J]. Science and Technology Management Research, 2021, 41(5):195-204., articleTitle=Research on factors influencing employee's green behavior based on fuzzy-DEMATEL-ISM method, refAbstract=null), Reference(id=1168181629714441025, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2023, volume=421, issue=null, pageStart=1, pageEnd=17, url=null, language=null, rfNumber=[20], rfOrder=29, authorNames=YU Shuaiju, GENG Xiuli, HE Jianjia, journalName=Journal of Cleaner Production, refType=null, unstructuredReference=YU Shuaiju, GENG Xiuli, HE Jianjia, et al. Evolution analysis of product service ecosystem based on interval Pythagorean fuzzy DEMATEL-ISM-SD combination model[J]. Journal of Cleaner Production, 2023, 421:1-17., articleTitle=Evolution analysis of product service ecosystem based on interval Pythagorean fuzzy DEMATEL-ISM-SD combination model, refAbstract=null), Reference(id=1168181629840270146, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=37, issue=3, pageStart=88, pageEnd=93, url=null, language=null, rfNumber=[21], rfOrder=30, authorNames=郝江锋, 陈华友, 钱云, journalName=重庆工商大学学报:自然科学版, refType=null, unstructuredReference=郝江锋, 陈华友, 钱云, 等. 基于区间值毕达哥拉斯模糊数的多属性决策方法[J]. 重庆工商大学学报:自然科学版, 2020, 37(3):88-93., articleTitle=基于区间值毕达哥拉斯模糊数的多属性决策方法, refAbstract=null), Reference(id=1168181629949322051, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=37, issue=3, pageStart=88, pageEnd=93, url=null, language=null, rfNumber=[21], rfOrder=31, authorNames=HAO Jiangfeng, CHEN Huayou, QIAN Yun, journalName=Journal of Chongqing Technology and Business University:Natural Science, refType=null, unstructuredReference=HAO Jiangfeng, CHEN Huayou, QIAN Yun, et al. Multi-attribute decision making method based on interval value pythagoras fuzzy number[J]. Journal of Chongqing Technology and Business University:Natural Science, 2020, 37(3):88-93., articleTitle=Multi-attribute decision making method based on interval value pythagoras fuzzy number, refAbstract=null), Reference(id=1168181630016430916, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=16, issue=11, pageStart=110, pageEnd=116, url=null, language=null, rfNumber=[22], rfOrder=32, authorNames=张勇, 王祥宇, journalName=中国安全生产科学技术, refType=null, unstructuredReference=张勇, 王祥宇. 基于DEMATEL-ISM-BN的施工人员不安全行为致因研究[J]. 中国安全生产科学技术, 2020, 16(11):110-116., articleTitle=基于DEMATEL-ISM-BN的施工人员不安全行为致因研究, refAbstract=null), Reference(id=1168181630083539781, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, doi=null, pmid=null, pmcid=null, year=2020, volume=16, issue=11, pageStart=110, pageEnd=116, url=null, language=null, rfNumber=[22], rfOrder=33, authorNames=ZHANG Yong, WANG Xiangyu, journalName=Journal of Safety Science and Technology, refType=null, unstructuredReference=ZHANG Yong, WANG Xiangyu. Study on causes of unsafe behaviors of construction workers based on DEMAREL-ISM-BN[J]. Journal of Safety Science and Technology, 2020, 16(11):110-116., articleTitle=Study on causes of unsafe behaviors of construction workers based on DEMAREL-ISM-BN, refAbstract=null)], funds=[Fund(id=1168181627319493411, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, awardId=2018YFB1403602, language=CN, fundingSource=科技部国家重点研发计划项目(2018YFB1403602), fundOrder=null, country=null)], companyList=[AuthorCompany(id=1168181623846609637, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=1, ext=[AuthorCompanyExt(id=1168181623854998246, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China), AuthorCompanyExt(id=1168181623863386855, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623846609637, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041)]), AuthorCompany(id=1168181623930495720, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, xref=2, ext=[AuthorCompanyExt(id=1168181623938884329, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=EN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China), AuthorCompanyExt(id=1168181623947272938, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, companyId=1168181623930495720, language=CN, country=null, province=null, city=null, postcode=null, companyName=null, departmentName=null, remark=2 北京邮电大学 经济管理学院,北京 100876)])], figs=[ArticleFig(id=1168181625679520521, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Fig.1, caption=Modeling and analyzing cloud-native security threats based on IPFS-DEMATEL-ISM, figureFileSmall=yTqjuKnebVm7V7sS1Ge6hw==, figureFileBig=L2NyrfQJWAqmx8UDlcUa4Q==, tableContent=null), ArticleFig(id=1168181625788572426, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=图1, caption=基于IPFS-DEMATEL-ISM建模分析云原生容器安全威胁的流程, figureFileSmall=yTqjuKnebVm7V7sS1Ge6hw==, figureFileBig=L2NyrfQJWAqmx8UDlcUa4Q==, tableContent=null), ArticleFig(id=1168181625847292683, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Fig.2, caption=Centrality-reasoning degree scatter plot, figureFileSmall=3SrErddWmRAF48gmXOF65w==, figureFileBig=xHjDSP3y5stU+yUNTeLBFQ==, tableContent=null), ArticleFig(id=1168181625931178764, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=图2, caption=中心度-原因度散点图, figureFileSmall=3SrErddWmRAF48gmXOF65w==, figureFileBig=xHjDSP3y5stU+yUNTeLBFQ==, tableContent=null), ArticleFig(id=1168181625973121805, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Fig.3, caption=Scatter plot of node degree decay corresponding to different threshold values λ, figureFileSmall=QrJz54imjOk/s0I0XlIkyw==, figureFileBig=fS/CEZya/3LF2ZUgKTTGng==, tableContent=null), ArticleFig(id=1168181626052813582, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=图3, caption=不同阈值 λ 对应节点度衰减散点图, figureFileSmall=QrJz54imjOk/s0I0XlIkyw==, figureFileBig=fS/CEZya/3LF2ZUgKTTGng==, tableContent=null), ArticleFig(id=1168181626136699663, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Fig.4, caption=ISM hierarchy segmentation model, figureFileSmall=7YIQdXk//ET9nblfiRMPYQ==, figureFileBig=/16oah2sjkj+WJ1vQhaXAw==, tableContent=null), ArticleFig(id=1168181626187031312, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=图4, caption=ISM层次划分模型, figureFileSmall=7YIQdXk//ET9nblfiRMPYQ==, figureFileBig=/16oah2sjkj+WJ1vQhaXAw==, tableContent=null), ArticleFig(id=1168181626228974353, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Fig.5, caption=Comparison of centrality-reasoning scatter plots in three methods, figureFileSmall=gUz2wXz9e6wufcZM97lHmA==, figureFileBig=toHnAGNy4+lOYutbDWfxyg==, tableContent=null), ArticleFig(id=1168181626296083218, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=图5, caption=3种方法计算输出的中心度-原因度散点图对比, figureFileSmall=gUz2wXz9e6wufcZM97lHmA==, figureFileBig=toHnAGNy4+lOYutbDWfxyg==, tableContent=null), ArticleFig(id=1168181626350609171, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Table 1, caption=

Transformation of IPFS

, figureFileSmall=null, figureFileBig=null, tableContent=
语言评价 IPFS数值
极高影响 ([0.80,0.95],[0.00,0.10])
高影响 ([0.60,0.80],[0.10,0.30])
中影响 ([0.40,0.60],[0.30,0.50])
低影响 ([0.20,0.40],[0.50,0.70])
无影响 ([0.00,0.20],[0.70,0.90])
), ArticleFig(id=1168181626430300948, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=表1, caption=

IPFS的语义变换

, figureFileSmall=null, figureFileBig=null, tableContent=
语言评价 IPFS数值
极高影响 ([0.80,0.95],[0.00,0.10])
高影响 ([0.60,0.80],[0.10,0.30])
中影响 ([0.40,0.60],[0.30,0.50])
低影响 ([0.20,0.40],[0.50,0.70])
无影响 ([0.00,0.20],[0.70,0.90])
), ArticleFig(id=1168181626489021205, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Table 2, caption=

Initial direct influence matrix A

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 0.000 0.625 0.397 0.245 0.152 0.152 0.152 0.152
执行 0.152 0.000 0.625 0.397 0.397 0.397 0.245 0.152
持久化 0.152 0.152 0.000 0.853 0.625 0.625 0.245 0.245
权限提升 0.152 0.152 0.152 0.000 0.853 0.625 0.397 0.245
防御绕过 0.152 0.152 0.152 0.152 0.000 0.397 0.625 0.245
窃取凭证 0.152 0.152 0.152 0.152 0.152 0.000 0.625 0.397
探测 0.152 0.152 0.152 0.152 0.152 0.152 0.000 0.853
横向移动 0.152 0.152 0.152 0.152 0.152 0.152 0.152 0.000
), ArticleFig(id=1168181626593878806, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=表2, caption=

初始直接影响矩阵A

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 0.000 0.625 0.397 0.245 0.152 0.152 0.152 0.152
执行 0.152 0.000 0.625 0.397 0.397 0.397 0.245 0.152
持久化 0.152 0.152 0.000 0.853 0.625 0.625 0.245 0.245
权限提升 0.152 0.152 0.152 0.000 0.853 0.625 0.397 0.245
防御绕过 0.152 0.152 0.152 0.152 0.000 0.397 0.625 0.245
窃取凭证 0.152 0.152 0.152 0.152 0.152 0.000 0.625 0.397
探测 0.152 0.152 0.152 0.152 0.152 0.152 0.000 0.853
横向移动 0.152 0.152 0.152 0.152 0.152 0.152 0.152 0.000
), ArticleFig(id=1168181626660987673, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Table 3, caption=

Comprehensive influence matrix T

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 0.110 0.332 0.301 0.290 0.300 0.303 0.296 0.280
执行 0.183 0.161 0.378 0.369 0.420 0.426 0.371 0.343
持久化 0.203 0.234 0.206 0.505 0.525 0.529 0.451 0.417
权限提升 0.179 0.207 0.226 0.203 0.508 0.459 0.439 0.386
防御绕过 0.145 0.168 0.183 0.206 0.185 0.315 0.405 0.312
窃取凭证 0.140 0.161 0.176 0.198 0.226 0.179 0.374 0.341
探测 0.135 0.156 0.170 0.191 0.218 0.221 0.179 0.442
横向移动 0.110 0.127 0.139 0.155 0.177 0.180 0.186 0.132
), ArticleFig(id=1168181626728096538, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=表3, caption=

综合影响矩阵T

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 0.110 0.332 0.301 0.290 0.300 0.303 0.296 0.280
执行 0.183 0.161 0.378 0.369 0.420 0.426 0.371 0.343
持久化 0.203 0.234 0.206 0.505 0.525 0.529 0.451 0.417
权限提升 0.179 0.207 0.226 0.203 0.508 0.459 0.439 0.386
防御绕过 0.145 0.168 0.183 0.206 0.185 0.315 0.405 0.312
窃取凭证 0.140 0.161 0.176 0.198 0.226 0.179 0.374 0.341
探测 0.135 0.156 0.170 0.191 0.218 0.221 0.179 0.442
横向移动 0.110 0.127 0.139 0.155 0.177 0.180 0.186 0.132
), ArticleFig(id=1168181626791011100, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Table 4, caption=

DEMATEL calculation results of cloud-native container security attack stages

, figureFileSmall=null, figureFileBig=null, tableContent=
攻击阶段 影响度 被影响度 中心度 中心度排序 原因度 原因属性
初始访问 2.212 1.206 3.418 8 1.006 原因要素
执行 2.670 1.548 4.218 6 1.121 原因要素
持久化 3.071 1.779 4.850 1 1.293 原因要素
权限提升 2.598 2.117 4.715 2 0.481 原因要素
防御绕过 1.920 2.569 4.478 3 -0.639 结果要素
窃取凭证 1.804 2.612 4.416 4 -0.807 结果要素
探测 1.713 2.731 4.445 5 -1.018 结果要素
横向移动 1.206 2.643 3.849 7 -1.436 结果要素
), ArticleFig(id=1168181626912645919, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=表4, caption=

云原生容器安全攻击各阶段DEMATEL计算结果

, figureFileSmall=null, figureFileBig=null, tableContent=
攻击阶段 影响度 被影响度 中心度 中心度排序 原因度 原因属性
初始访问 2.212 1.206 3.418 8 1.006 原因要素
执行 2.670 1.548 4.218 6 1.121 原因要素
持久化 3.071 1.779 4.850 1 1.293 原因要素
权限提升 2.598 2.117 4.715 2 0.481 原因要素
防御绕过 1.920 2.569 4.478 3 -0.639 结果要素
窃取凭证 1.804 2.612 4.416 4 -0.807 结果要素
探测 1.713 2.731 4.445 5 -1.018 结果要素
横向移动 1.206 2.643 3.849 7 -1.436 结果要素
), ArticleFig(id=1168181627009114913, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=EN, label=Table 5, caption=

Reachability matrix D

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 1 0 0 0 0 0 0 0
执行 0 1 0 0 1 1 0 0
持久化 0 0 1 1 1 1 1 1
权限提升 0 0 0 1 1 1 1 1
防御绕过 0 0 0 0 1 0 1 0
窃取凭证 0 0 0 0 0 1 0 0
探测 0 0 0 0 0 0 1 1
横向移动 0 0 0 0 0 0 0 1
), ArticleFig(id=1168181627101389602, tenantId=1146029695717560320, journalId=1146031787341344770, articleId=1149743086575726960, language=CN, label=表5, caption=

可达矩阵D

, figureFileSmall=null, figureFileBig=null, tableContent=
阶段 初始访问 执行 持久化 权限提升 防御绕过 窃取凭证 探测 横向移动
初始访问 1 0 0 0 0 0 0 0
执行 0 1 0 0 1 1 0 0
持久化 0 0 1 1 1 1 1 1
权限提升 0 0 0 1 1 1 1 1
防御绕过 0 0 0 0 1 0 1 0
窃取凭证 0 0 0 0 0 1 0 0
探测 0 0 0 0 0 0 1 1
横向移动 0 0 0 0 0 0 0 1
)], attaches=null, journal=Journal(id=1123942128916217864, delFlag=0, nameCn=中国安全科学学报, nameEn=China Safety Science Journal, nameHistory1=null, nameHistory2=null, issn=1003-3033, eissn=, cn=11-2865/X, coden=null, periodic=0, language=CN, oaType=0, ccby=null, superviseOffice=null, ownerOffice=null, pubOffice=null, editorOffice=null, officeType=null, aims=null, clcCode=null, officeProv=null, officeCity=null, officeAddr=null, officeZip=null, officeEmail=null, officePhone=null, editDirector=null, officeDirector=null, officeDirectorPhone=null, officeStaffNum=null, officeEmpNum=null, coverPicUrl=fkqsFM6VKlHC4gCtS5XqTw==, journalPrice=null, startedYear=null, abbrevIsoEn=Chin Saf Sci J, journalRemark=null, publicationField=null, createdTime=null, updatedTime=1754269350027, createdBy=null, updatedBy=13701087609, firstLetterCn=C, firstLetterEn=C, subjectCode=Engineering, subjectName=工程, subjectCodeEn=Engineering, subjectNameEn=null, picCn=fkqsFM6VKlHC4gCtS5XqTw==, picEn=SHn9HgqSxtJrOcAxqD++4Q==, jcr=null, cjcr=null, exts=[JournalExt(id=1159052918994595848, language=CN, name=中国安全科学学报, nameHistory1=null, nameHistory2=null, managedBy=, sponsoredBy=, publishedBy=, editorOffice=, officeProv=null, officeCity=null, officeAddr=, officeZip=, editDirector=null, officeDirector=null, officePhone=null, coverPicUrl=null, journalRemark=, submitArticleUrl=null, websiteUrl=http://www.cssjj.com.cn/, createdTime=1754269350050, updatedTime=1754269350050, createdBy=13701087609, updatedBy=13701087609, submissionGuidelinesUrl=http://www.cssjj.com.cn/CN/column/item15.shtml, submissionAuthorUrl=https://zgaqkxxbauthor.manuscriptcloud.com/login, submissionEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, submissionReviewUrl=https://zgaqkxxbauthor.manuscriptcloud.com/login, submissionCeEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, submissionAeEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, option={"copyright":""}), JournalExt(id=1159052919040733193, language=EN, name=China Safety Science Journal, nameHistory1=null, nameHistory2=null, managedBy=, sponsoredBy=, publishedBy=, editorOffice=, officeProv=null, officeCity=null, officeAddr=, officeZip=, editDirector=null, officeDirector=null, officePhone=null, coverPicUrl=null, journalRemark=, submitArticleUrl=null, websiteUrl=http://www.cssjj.com.cn/EN/1003-3033/home.shtml, createdTime=1754269350061, updatedTime=1754269350061, createdBy=13701087609, updatedBy=13701087609, submissionGuidelinesUrl=https://synbioj.cip.com.cn/EN/column/column3.shtml, submissionAuthorUrl=https://zgaqkxxbauthor.manuscriptcloud.com/login, submissionEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, submissionReviewUrl=https://zgaqkxxbauthor.manuscriptcloud.com/login, submissionCeEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, submissionAeEditorUrl=https://zgaqkxxbeditor.manuscriptcloud.com/login, option={"copyright":""})], databaseList=null, tenantJournalId=1146031787341344770, websiteList=[Website(id=1148243202345263519, webName=null, webTitle=null, webDomain=null, webCopyrigh=null, webIpcNo=null, seoTitle=null, seoKeywords=null, seoDescription=null, tenantJournalId=null, journalId=1146031787341344770, journalNameCn=null, journalNameEn=null, grayFlag=null, tenantId=1146029695717560320, platformId=null, journalGroupId=null, journalGroupNameCn=null, journalGroupNameEn=null, type=1, domain=https://castjournals.cast.org.cn/joweb/zgaqkxxb/CN, language=CN, createTime=1751692112766, createBy=18614031015, updateTime=1753502583634, updateBy=18614031015, name=《中国安全科学学报》中文站点, tplId=1146099689490845704, title=中国安全科学学报, delFlag=0, indexPage=/home, props=[WebsiteProps(id=1148618794941046792, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1148243202345263519, code=articleTextType, value=kx, createTime=1751781661020, updateTime=1751781661020, creator=18614031015, updator=18614031015), WebsiteProps(id=1148618794911686661, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1148243202345263519, code=banner, value=null, createTime=1751781661012, updateTime=1751781661012, creator=18614031015, updator=18614031015), WebsiteProps(id=1148618794894909444, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1148243202345263519, code=logo, value=https://castjournals.cast.org.cn/joweb/kjdb/CN/file/pic?fileId=tui0IVO9FMwB61HHtX5scg==, createTime=1751781661008, updateTime=1751781661008, creator=18614031015, updator=18614031015), WebsiteProps(id=1148618794932658183, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1148243202345263519, code=picServerUrl, value=https://castjournals.cast.org.cn/joweb/kjdb/CN/file/pic, createTime=1751781661017, updateTime=1751781661017, creator=18614031015, updator=18614031015), WebsiteProps(id=1148618794924269574, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1148243202345263519, code=staticResourcePath, value=https://castjournals.cast.org.cn/joweb/cast_kjdb_cn_619/, createTime=1751781661015, updateTime=1751781661015, creator=18614031015, updator=18614031015)]), Website(id=1155836763751993353, webName=null, webTitle=null, webDomain=null, webCopyrigh=null, webIpcNo=null, seoTitle=null, seoKeywords=null, seoDescription=null, tenantJournalId=null, journalId=1146031787341344770, journalNameCn=null, journalNameEn=null, grayFlag=null, tenantId=1146029695717560320, platformId=null, journalGroupId=null, journalGroupNameCn=null, journalGroupNameEn=null, type=1, domain=https://castjournals.cast.org.cn/joweb/zgaqkxxb/EN, language=EN, createTime=1753502558893, createBy=18614031015, updateTime=1753524450387, updateBy=18614031015, name=《中国安全科学学报》英文站点, tplId=1146101810881728533, title=China Safety Science Journal, delFlag=0, indexPage=/home, props=[WebsiteProps(id=1155895925743669425, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1155836763751993353, code=articleTextType, value=kx, createTime=1753516664205, updateTime=1753516664205, creator=18614031015, updator=18614031015), WebsiteProps(id=1155895925722697902, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1155836763751993353, code=banner, value=null, createTime=1753516664200, updateTime=1753516664200, creator=18614031015, updator=18614031015), WebsiteProps(id=1155895925714309293, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1155836763751993353, code=logo, value=https://castjournals.cast.org.cn/joweb/kjdb/CN/file/pic?fileId=tui0IVO9FMwB61HHtX5scg==, createTime=1753516664198, updateTime=1753516664198, creator=18614031015, updator=18614031015), WebsiteProps(id=1155895925735280816, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1155836763751993353, code=picServerUrl, value=https://castjournals.cast.org.cn/joweb/kjdb/CN/file/pic, createTime=1753516664203, updateTime=1753516664203, creator=18614031015, updator=18614031015), WebsiteProps(id=1155895925731086511, tenantId=1146029695717560320, journalId=null, journalGroupId=null, siteId=1155836763751993353, code=staticResourcePath, value=https://castjournals.cast.org.cn/joweb/cast_kjdb_cn_619/, createTime=1753516664202, updateTime=1753516664202, creator=18614031015, updator=18614031015)])], journalTitle=中国安全科学学报, weixinUrl=null, journalUrl=null, iacademicId=null, status=0, seqNo=null, journalTitleEn=China Safety Science Journal, journalPhotoCn=fkqsFM6VKlHC4gCtS5XqTw==, journalPhotoEn=SHn9HgqSxtJrOcAxqD++4Q==, journalFirstLetter=C, journalRecommend=null, journalNew=null, journalCollection=1, jcrJf=null, cjcrJf=null, jcrJfStr=null, cjcrJfStr=null, submissionFirstDecision=null, sciSubjectClassification=null, casSubjectClassification=null, citeScore=null, totalCitationFrequency=null, icpCode=null, psCode=null, advertisingLicenseCode=null, copyrightInformation=null, country=null, option=null, provinceCode=null, provinceName=null, collectFlag=false), detailUrlCn=https://castjournals.cast.org.cn/joweb/zgaqkxxb/CN/10.16265/j.cnki.issn1003-3033.2024.06.0074, detailUrlEn=https://castjournals.cast.org.cn/joweb/zgaqkxxb/EN/10.16265/j.cnki.issn1003-3033.2024.06.0074, pdfUrlCn=https://castjournals.cast.org.cn/joweb/zgaqkxxb/CN/PDF/10.16265/j.cnki.issn1003-3033.2024.06.0074, pdfUrlEn=https://castjournals.cast.org.cn/joweb/zgaqkxxb/EN/PDF/10.16265/j.cnki.issn1003-3033.2024.06.0074, aliStartDate=null, aliEndDate=null, collectionFlag=false, citedCount=null, citedUrl=null, reference=null)
收藏切换
基于IPFS-DEMATEL-ISM的容器安全威胁关键战术要素研究
收藏切换
PDF下载
盛剑桥 1 , 曾丽帆 2 , 方圆 1 , 吴俊 2, **
中国安全科学学报 | 安全工程技术 2024,34(6): 157-163
收起
收藏切换
中国安全科学学报 | 安全工程技术 2024, 34(6): 157-163
基于IPFS-DEMATEL-ISM的容器安全威胁关键战术要素研究
全屏
盛剑桥1 , 曾丽帆2, 方圆1, 吴俊2, **
作者信息
  • 1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041
  • 2 北京邮电大学 经济管理学院,北京 100876
  • 盛剑桥 (1992—),男,安徽合肥人,硕士,工程师,主要从事电网信息系统安全研究等方面的研究。E-mail:

    方 圆 高级工程师

通讯作者:

**吴 俊(1978—),男,安徽合肥人,博士,教授,主要从事前沿技术创新与大数据分析等方面的研究。E-mail:
Study on key tactical factors of container security threats based on IPFS-DEMATEL-ISM Method
Jianqiao SHENG1 , Lifan ZENG2, Yuan FANG1, Jun WU2, **
Affiliations
  • 1 Information and Communication Branch,State Grid Anhui Electric Power Co.,Ltd.,Hefei Anhui 230041,China
  • 2 School of Economics and Management,Beijing University of Posts and Telecommunications,Beijing 100876,China
出版时间: 2024-06-28 doi: 10.16265/j.cnki.issn1003-3033.2024.06.0074
文章导航
收藏切换

为解决电力能源企业“上云”引发的云原生容器安全威胁问题,提出融合区间毕达哥拉斯模糊集(IPFS)、决策试验与评价实验室(DEMATEL)和解释结构模型法(ISM)识别容器安全关键战术要素。首先,基于IPFS提取安全专家对容器入侵威胁战术要素的经验判断,其次,应用DEMATEL和ISM识别容器安全威胁的关键战术要素及要素间的层级拓扑关系。结果表明:持久化和权限提升2个战术阶段的中心度和原因度较高,在整个云原生安全威胁体系中居于核心地位,这2个阶段的安全攻击行为需持高优先级关注;执行和持久化战术阶段的威胁攻击是云原生容器安全的本质要素,初始访问、窃取凭证以及横向移动战术阶段的威胁最直接影响云原生容器安全。研究提出的IPFS-DEMATEL-ISM法相较DEMATEL-ISM和集成三角模糊数的DEMATEL-ISM法在识别容器安全威胁关键战术要素时具有更好区分度和简约解释性。

区间毕达哥拉斯模糊集(IPFS)  /  决策试验与评价实验室(DEMATEL)  /  解释结构模型(ISM)  /  容器安全威胁  /  关键战术要素

In order to address the increasingly serious cloud-native container security threats arising from large-scale cloud migration of systems,the ISM method merging IPFS,DEMATEL,and method were proposed to identify the key tactical factors influencing cloud-native container security threats and their hierarchical logical relationships from the security intruder perspective. The findings of this research are as follows: the centrality and causality of the persistence and privilege escalation tactical phases are high,positioning them at the core of the entire cloud-native security threat landscape. Security attacks during these two phases require high-priority attention. Threat attacks during the execution and persistence tactical phases constitute essential factors in cloud-native container security. The threats during the initial access,credential theft,and lateral movement tactical phases have the most direct impact on cloud-native container security. In comparison with traditional and triangular fuzzy sets improved DEMATEL-ISM,our proposed method has better performance in identifying container security-related critical factors.

interval pythagorean fuzzy set (IPFS)  /  decision-making trial and evaluation laboratory (DEMATEL)  /  interpretative structural modeling (ISM)  /  container security threats  /  critical tactical factors
盛剑桥, 曾丽帆, 方圆, 吴俊. 基于IPFS-DEMATEL-ISM的容器安全威胁关键战术要素研究. 中国安全科学学报, 2024 , 34 (6) : 157 -163 . DOI: 10.16265/j.cnki.issn1003-3033.2024.06.0074
Jianqiao SHENG, Lifan ZENG, Yuan FANG, Jun WU. Study on key tactical factors of container security threats based on IPFS-DEMATEL-ISM Method[J]. China Safety Science Journal, 2024 , 34 (6) : 157 -163 . DOI: 10.16265/j.cnki.issn1003-3033.2024.06.0074
2020年4月,国家发展改革委协同中央网络和信息化办公室印发了《关于推进“上云用数赋智”行动,培育新经济发展实施方案》[1]鼓励广大企业“上云用数赋智”,推动业务创新,加速数字化转型。在此背景下,电力能源企业加快业务应用系统向云端迁移。到2024年,将有15%的应用运行在云端容器中,75%的大型企业将会在生产中使用容器技术[2]
一般认为,狭义概念的云原生指使用Docker软件封装,基于Kubernetes平台对容器动态编排管理,采用微服务架构的应用系统。相较于传统的信息系统,云原生应用系统的微服务之间独立自治,互相解耦[3]。广义的云原生是包含系列技术体系、系统设计理念、组织管理方法的全面应用系统变革,核心要素包括基础设施云原生、业务云原生、管理运维云原生,代表技术包括容器、微服务、开发运维一体、持续集成(部署)等[4]。发展云原生的主要目标是支持各类组织在新型动态环境中快速构建和稳定运行可弹性伸缩的应用。由此带来企业应用形态的2大变化:①云原生技术给应用带来更好的韧性、适用性、故障自愈率;②遵循微服务设计的应用云原生化,使得应用数量快速增长,应用更为分散,配置更为复杂,应用间交互引发应用接口数量指数级增长,给云原生应用和业务运营的稳定带来新的风险。
容器技术是云原生的基础,既有研究指出,容器遭遇的安全威胁既表现为来源多样,如镜像源不安全[5],环境存在漏洞[6-7],交付机制存在隐患[8]等,也体现为攻击手段各异,如逃逸攻击[5]、拒绝服务攻击[9]等。现有研究多将容器安全威胁视为孤立因素[10-12],不仅较少考虑威胁间的关联关系,还十分缺乏针对电力能源大型企业容器安全的针对性分析。
为应对传统企业“上云”引发的容器安全威胁,笔者拟基于国内某云原生安全服务提供商的项目实践,收集大量针对云上安全威胁及攻击的实例,围绕云原生业务场景,全方面分析攻击者战术与手段,并从云原生容器安全攻防的8个战术阶段要素入手,应用区间毕达哥拉斯模糊集(Interval Pythagorean Fuzzy Set,IPFS)、决策实验室(Decision-Making Trial and Evaluation Laboratory,DEMATEL)和解释结构模型法(Interpretative Structural Modeling,ISM),揭示关键战术要素以及要素间的层次逻辑关系,以期识别风险,有效保障云上资产安全。
如果把云原生容器安全防护视为一个复杂系统,可以看到,影响该复杂系统的要素众多且关联。首先,借鉴国外基于真实安全攻防事件总结形成的对抗战术和技术通用知识库(Adversarial Tactics Techniques and Common Knowledge,ATT&CK),找到攻击者典型战术的划分依据[12-13];其次,参考国内公开的容器攻防战术阶段划分;进一步地,针对国内大型电力能源企业总结的8类容器攻击典型战术,从入侵者视角出发,识别容器安全的关键战术要素。为量化专家的主观语义评价,识别核心主导要素,展现要素间的层级关系,综合采用IPFS、DEMATEL和ISM的组合方法展开研究。
从直觉模糊集拓展而来的毕达哥拉斯模糊集法由YAGER[14]提出,约定毕达哥拉斯模糊集的隶属度和非隶属度平方和≤1。为解决实际决策应用中评价指标属性的隶属度和非隶属度难以用精确数字表征的不足[15],ZHANG XiaoLu[16]提出IPFS概念,采用区间形式来表达评价者的主观评价和偏好。首先采用IPFS将专家的语义评价转换为量化分值,以解决专家评分不确定性高难题。DEMATEL和ISM法擅于发现复杂系统构成要素的重要性及要素间层级关系[17-19],文中将IPFS、DEMATEL与ISM法联合用于研究情境,有利于增强专家经验区分度,识别并可视化展现影响容器安全威胁的表层、过渡和根本因素,方法应用与建模流程如图1所示。
实施IPFS、DEMATEL和ISM法有如下7个步骤:
步骤1:基于国内外文献和企业最佳实践梳理,邀请云原生安全领域专家,确定云原生安全威胁的分析视角、思路与关键要素。
步骤2:编写问卷邀请领域专家评价云原生安全威胁不同战术之间的两两影响程度,设定为无影响、低影响、中影响、高影响、极高影响。
步骤3:回收问卷数据,构建区间毕达哥拉斯初始直接影响矩阵 A = [ a i j ] n × n(n为影响要素数量),aij表示要素i对要素j的影响程度,对角线aij表示要素对自身的影响,取值为0,见下式。其中, p ˙ 为区间毕达哥拉斯模糊数,ab为区间隶属度,cd为区间非隶属度,参照文献[20],设置语义变换见表1
p ~ = ( [ a b ] [ c d ] )
π 2 - = 1 - ( b 2 + d 2 )
π 2 + = 1 - ( a 2 + c 2 )
D p ~ = a 2 + b 2 + ( 1 - c 2 - π 2 + ) + ( 1 - d 2 - π 2 - ) + a b + ( 1 - c 2 - π 2 + ) × ( 1 - d 2 - π 2 - ) 4 / x
式中: π - 2 π + 2分别为犹豫度下限和上限平方; D p ~为区间模糊数去模糊化后的对应值。
步骤4:计算标准化直接影响矩阵 B = [ b i j ] n × n和综合影响矩阵 T = [ t i j ] n × nE 为单位矩阵,见下式:
B = A / x
x = m a x m a x 1 i n i = 1 n a i j m a x 1 j n j = 1 n a i j
T = B E - B - 1
步骤5:计算中心度Mi和原因度Ri并绘制因果图。di为因素i的影响度,即直接或间接影响其他因素程度的总和,ci表示因素i的被影响度,即被其他因素影响程度的总和,见下式:
d i = i = 1 n t i j
c i = j = 1 n t i j
M i = d i + c i
R i = d i - c i
步骤6:构建邻接矩阵 C = [ c i j ] ( n + 1 ) × ( n + 1 )和可达矩阵 D = [ d i j ] ( n + 1 ) × ( n + 1 ),见下式。设置阈值 λ剔除一些影响程度较小的要素, λ取值通常为矩阵各要素均值与标准差之和[21],同时也可根据研究问题与情境调试决定。
c i j = 0 c i j < λ 1 c i j λ i j = 1,2 n + 1
D = C + E n + 2 = C + E n + 1 C + E n C + E
步骤7:划分ISM层级,构建层级图。将要素分别记为S1-Sn,依据可达矩阵D计算递阶层级要素集合R(Sk)、A(Sk)、C(Sk)、B(Sk)和E(Sk), k = 1,2 n 见下式:
R ( S k ) = { s k S | m k j = 1 }
A ( S k ) = { s k S | m j k = 1 }
C ( S k ) = R ( S k ) A ( S k )
B ( S k ) = { s k S | A ( S k ) = C ( S k ) }
E ( S i ) = { s i S | R ( S i ) = C ( S i ) }
邀请云原生容器安全领域的15名专家,包括云原生安全提供商2位技术总监、2位高级专家、2位项目经理;电力行业云原生应用厂商2名业务部门负责人、2名高级工程师、2名业务骨干,以及从事云原生安全研究的教授1名、副教授2名。采用问卷方式,调研专家对云原生容器安全威胁不同阶段的主要攻击技术以及各阶段两两间的相互影响。针对问卷结果,使用SPSS.25.0对15位专家的评分进行信度检验,发现Cronbach's α为0.872,大于0.80,说明专家研判结果信度较高。
接下来,将15位专家的语义评价通过表1及式(1)—式(4)转化为区间毕达哥拉斯初始直接影响矩阵A,见表2
然后,依据式(5)—式(7)计算得到综合影响矩阵T,见表3
进一步,应用式(8)—式(11)计算输出各阶段的影响度、被影响度、中心度及原因度见表4,此外,绘制各阶段的中心度-原因度散点如图2所示。
表4图2中,中心度越高,表示该要素在系统中的作用越关键,核心程度越强。原因度越高,表示该要素对其他要素的影响越大。原因度大于0的因素称为原因因素,原因度小于0的因素称为结果因素。从表3图2不难发现,中心度排名前3的阶段分别为持久化、权限提升和防御绕过阶段,说明这3个阶段的安全威胁最关键,处于核心地位;原因度排名前3的阶段分别为持久化、执行和初始访问阶段,表明这3个阶段对其他阶段的影响最大。另外,防御绕过、窃取凭证、探测以及横向移动阶段均为结果因素,反映这些阶段易受其他阶段的攻击威胁影响。从图2可以看出,居于第一象限的持久化和权限提升阶段的中心度和原因度均较高,在整个云原生安全威胁体系中居于核心地位,这2个阶段的安全攻击行为需持高优先级关注。
为输出各要素的层级结构关系,计算可达矩阵;为剔除两两影响程度较小的要素,引入阈值 λ,参考已有研究[1722],分别设置 λ值为0.29、0.33、0.38和0.43不同阈值下节点度的衰减情况,如图3所示。可以看到,当 λ取值0.38时,节点度较为适中。按照式(12)、式(13)计算,得到可达矩阵D,见表5
根据可达矩阵D及式(14)—式(18),进行层次划分,绘制ISM层次结构,如图4所示。
图4可以看出,执行阶段和持久化阶段的威胁攻击是云原生容器安全的本质要素,它们通过与其他层次要素联系,起着牵一发动全身的根本影响,需要对这2个阶段的攻击防御高度重视。权限提升、防御绕过和探测阶段属于中间过渡要素,起着与本质要素和表层要素的跨层影响作用。初始访问、窃取凭证以及横向移动阶段的威胁是表层要素,最直接影响云原生容器安全。其中,初始访问不受其他要素的影响,在层次模型中活跃性较低。窃取凭证和横向移动受到本质和中间过渡要素影响,可控性最强。
为验证提出的IPFS-DEMATEL-ISM法性能优势,将传统的DEMATEL-ISM法和纳入三角模糊数的Fuzzy DEMATEL-ISM法应用同样数据,作试验对比,3种方法计算输出的中心度-原因度散点图如图5所示。
可以看到,文中提出的IPFS-DEMATEL-ISM法输出数据点的中心度较为分散,传统的DEMATEL-ISM法和Fuzzy DEMATEL-ISM法输出数据点的中心度比较集中,不易区分各点间的差异。
此外,采用Fuzzy DEMATEL-ISM和传统DEMATEL-ISM法构建的综合影响矩阵,接近阈值λ的数据点(分别有14和15个)也多于IPFS-DEMATEL-ISM法处理的综合影响矩阵。这些接近阈值λ的数据点,在构建可达矩阵时不仅易产生混淆,而且它们所对应边在ISM 层次化模型中的可解释性相对较弱,影响ISM模型的简约性。
综上所述,文中提出的IPFS-DEMATEL-ISM法相对另外2种方法能更好地区分8类容器攻击典型战术间的异同,结果更具稳健性。
1) 提出IPFS-DEMATEL-ISM法,研究表明:持久化和权限提升战术阶段的中心度和原因度较高,在整个云原生安全威胁体系中居于核心地位,这2个阶段的安全攻击行为需持高优先级关注。执行和持久化战术阶段的威胁攻击是云原生容器安全的本质要素,初始访问、窃取凭证以及横向移动战术阶段的威胁最直接影响云原生容器安全。
2) 相较于传统和考虑三角模糊数的DEMLAT-ISM法,文中提出的IPFS-DEMATEL-ISM法能够更好地区分容器安全威胁战术要素间关系,并具有简约解释性。
3) 提出完善企业核心系统上云触发的容器安全威胁应对策略包括将识别的云原生安全攻击关键战术要素与对应的技术手段相勾稽,构建分层分级的安全防御策略;鉴于云原生容器安全威胁复杂,攻防交互多变,企业应选型采纳成熟的一体化云原生安全解决方案。
4) 未来研究可从每个战术阶段下的典型攻击技术入手,进一步分析不同攻击技术对容器镜像内容依赖、执行配置依赖和动态构建依赖的影响,不断完善企业上云引发的容器安全威胁应对策略。
  • 科技部国家重点研发计划项目(2018YFB1403602)
参考文献 引证文献
排序方式:
[1]
国家发展改革委, 中央网信办. 关于推进“上云用数赋智”行动培育新经济发展实施方案[EB/OL].[2020-04-07]. https://www.gov.cn/zhengce/zhengceku/2020-04/10/content_5501163.htm. https://www.gov.cn/zhengce/zhengceku/2020-04/10/content_5501163.htm
[2]
Gartner Research. Forecast analysis: container management (software and services),worldwide[EB/OL].[2020-05-29]. https://www.gartner.com/en/documents/3985796. https://www.gartner.com/en/documents/3985796
[3]
RAHAMAN M S, ISLAM A, CERNY T, et al. Static-analysis-based solutions to security challenges in cloud-native systems: systematic mapping study[J]. Sensors, 2023, 23(4):1-27.
[4]
胡俊, 李漫. 容器安全解决方案探讨与研究[J]. 网络空间安全, 2018, 9(12):105-113.
HU Jun, LI Man. Discussion and research on container security solutions[J]. Cyberspace Security, 2018, 9(12):105-113.
[5]
任兰芳, 庄小君, 付俊. Docker容器安全防护技术研究[J]. 电信工程技术与标准化, 2020, 33(3):73-78.
REN Lanfang, ZHUANG Xiaojun, FU Jun. Technical research of docker container security protection[J]. Telecom Engineering Technics and Standardization, 2020, 33(3):73-78.
[6]
杨长茂, 冯超, 谷晓剑. 云原生中的容器安全防护和实践[J]. 保密科学技术, 2021(1):36-42.
[7]
宋胜攀, 刘振慧, 庄东燃. 开源容器技术安全分析[J]. 保密科学技术, 2021(1):29-35.
[8]
边曼琳, 王利明. 云环境下Docker容器隔离脆弱性分析与研究[J]. 信息网络安全, 2020, 20(7):85-95.
BIAN Manlin, WANG Liming. Analysis and research on vulnerability of docker container isolation in cloud environment[J]. Netinfo Security, 2020, 20(7):85-95.
[9]
邢云龙, 严飞, 刘彦孝, 等. 基于系统调用限制的容器安全防护方案[J]. 武汉大学学报:理学版, 2022, 68(1):35-43.
XING Yunlong, YAN Fei, LIU Yanxiao, et al. Container security protection scheme based on system call restriction[J]. Journal of Wuhan University:Natural Science Edition, 2022, 68(1):35-43.
[10]
周大成, 陈鸿昶, 何威振, 等. 基于深度强化学习的微服务多维动态防御策略研究[J]. 通信学报, 2023, 44(4):50-63.
ZHOU Dacheng, CHEN Hongchang, HE Weizhen, et al. Research on multidimensional dynamic defense strategy for microservice based on deep reinforcement learning[J]. Journal on Communications, 2023, 44(4):50-63.
[11]
夏懿航, 张志龙, 王木子, 等. 基于依赖关系的容器供应链脆弱性检测方法[J]. 信息网络安全, 2023, 23(2):76-84.
XIA Yihang, ZHANG Zhilong, WANG Muzi, et al. Dependency-based vulnerability detection method in container supply chain[J]. Netinfo Security, 2023, 23(2):76-84.
[12]
王海林, 颜颖, 唐旭玥. ATT&CK在安全运营中的应用研究[J]. 网络安全技术与应用, 2022(8):5-6.
[13]
张宇翔, 韩久江, 刘建, 等. ATT&CK框架下基于事件序列关联的网络高级威胁检测系统[J]. 计算机科学, 2023, 50(增1):710-716.
ZHANG Yuxiang, HAN Jiujiang, LIU Jian, et al. Network advanced threat detection system based on event sequence correlation under ATT&CK framework[J]. Computer Science, 2023, 50(S1):710-716.
[14]
YAGER R R. Pythagorean membership grades in multicriteria decision making[J]. IEEE Transactions on Fuzzy Systems, 2013, 22(4):958-965.
[15]
ATANASSOV K T. Intuitionistic fuzzy sets[J]. Fuzzy Sets and Systems, 1986, 20(1):87-96.
[16]
ZHANG XiaoLu. Multicriteria Pythagorean fuzzy decision analysis: a hierarchical QUALIFLEX approach with the closeness index-based ranking methods[J]. Information Sciences, 2016, 330:104-124.
[17]
李广利, 严一知, 刘文琦, 等. 基于DEMATEL-ISM的矿工不安全情绪形成因子研究[J]. 中国安全科学学报, 2021, 31(7):30-37.
LI Guangli, YAN Yizhi, LIU Wenqi, et al. Research on formation factors of miners' unsafe emotions based on DEMATEL-ISM[J]. China Safety Science Journal, 2021, 31(7):30-37.
[18]
缪秀梅, 陈烨天, 米传民. 基于ISM和在线评论的汤山温泉顾客满意度研究[J]. 中国管理科学, 2019, 27(7):186-194.
MIAO Xiumei, CHEN Yetian, MI Chuanmin. Study on consumer satisfaction of tangshan hot springs based on ISM and online reviews[J]. Chinese Journal of Management Science, 2019, 27(7):186-194.
[19]
赵希男, 肖彤. 基于模糊DEMATEL-ISM方法的员工绿色行为影响因素研究[J]. 科技管理研究, 2021, 41(5):195-204.
ZHAO Xi'nan, XIAO Tong. Research on factors influencing employee's green behavior based on fuzzy-DEMATEL-ISM method[J]. Science and Technology Management Research, 2021, 41(5):195-204.
[20]
YU Shuaiju, GENG Xiuli, HE Jianjia, et al. Evolution analysis of product service ecosystem based on interval Pythagorean fuzzy DEMATEL-ISM-SD combination model[J]. Journal of Cleaner Production, 2023, 421:1-17.
[21]
郝江锋, 陈华友, 钱云, 等. 基于区间值毕达哥拉斯模糊数的多属性决策方法[J]. 重庆工商大学学报:自然科学版, 2020, 37(3):88-93.
HAO Jiangfeng, CHEN Huayou, QIAN Yun, et al. Multi-attribute decision making method based on interval value pythagoras fuzzy number[J]. Journal of Chongqing Technology and Business University:Natural Science, 2020, 37(3):88-93.
[22]
张勇, 王祥宇. 基于DEMATEL-ISM-BN的施工人员不安全行为致因研究[J]. 中国安全生产科学技术, 2020, 16(11):110-116.
ZHANG Yong, WANG Xiangyu. Study on causes of unsafe behaviors of construction workers based on DEMAREL-ISM-BN[J]. Journal of Safety Science and Technology, 2020, 16(11):110-116.
2024年第34卷第6期
PDF下载
369
168
引用本文
BibTeX
文章信息
doi: 10.16265/j.cnki.issn1003-3033.2024.06.0074
  • 接收时间:2023-12-16
  • 首发时间:2025-07-09
  • 出版时间:2024-06-28
补充材料
相关文章
文章信息
作者
出版历史
  • 收稿日期:2023-12-16
  • 修回日期:2024-03-21
基金
科技部国家重点研发计划项目(2018YFB1403602)
作者信息
    1 国网安徽省电力有限公司 信息通信分公司,安徽 合肥 230041
    2 北京邮电大学 经济管理学院,北京 100876

通讯作者:

**吴 俊(1978—),男,安徽合肥人,博士,教授,主要从事前沿技术创新与大数据分析等方面的研究。E-mail:
参考文献
分享链接
https://castjournals.cast.org.cn/joweb/zgaqkxxb/CN/10.16265/j.cnki.issn1003-3033.2024.06.0074
分享至
全文二维码

扫描看全文

引用本文
BibTeX
本文的引用情况
2种不同金属材料的力学参数

Family
属数
Number of
genus
种数
Number of
species
占总种数比例
Percentage of
total species (%)

Genus
种数
Number of
species
占总种数比例
Percentage of total
species (%)
鹅膏菌科Amanitaceae 2 11 5.26 鹅膏菌属 Amanita 10 4.78
小菇科 Mycenaceae 2 12 5.74 丝盖伞属 Inocybe 5 2.39
多孔菌科 Polyporaceae 8 14 6.70 蜡蘑属 Laccaria 5 2.39
红菇科 Russulaceae 3 23 11.00 小皮伞属 Marasmius 6 2.87
小菇属 Mycena 11 5.26
光柄菇属 Pluteus 5 2.39
红菇属 Russula 17 8.13
栓菌属 Trametes 5 2.39
关闭全屏