Modelling Attacker Network Reconnaissance Using the Environment of an Integrated Time Scale Synchronization and Delivery System

А К Канаев, Evgeniy Oparin, Ekaterina Oparina · Известия Петербургского университета путей сообщения · 2025

To assess the security and vulnerability techniques for a complex system of time scale synchronization and delivery in case of attacker network reconnaissance in the net environment. Methods: Collection, systematization and analysis of scientific and technical information; methods of network and graph theory, mathematical modelling, and probability theory. Results: This paper presents the results of modelling attacker actions during network reconnaissance in communication networks using time-frequency support systems. A semi-Markov and simulation models of attacker behaviour were built reflecting all phases of the confrontation between an organised attacker and an information security system. The semi-Markov and simulation models make it possible to illustrate probability and time characteristics of processes reflecting the confrontation between an organized attacker and an information security system as well as to evaluate these characteristics depending on the content, quantity and quality of the resources available to the attacker and the information security system. The verification of the generated simulation model was carried out using the constructed semi-Markov model. Practical significance: The constructed models can be used to analyze the process of confrontation between information security systems and organized intruders, to assess attacker activities and those of the information security system, as well as to evaluate the time-frequency support systems judging by the results of the confrontation. The simulation results obtained can be used by information security specialists in building, modernizing, and designing security tools for time and frequency reference systems.

Read the paper · More papers on PaperTik