{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,2]],"date-time":"2026-05-02T07:01:24Z","timestamp":1777705284024,"version":"3.51.4"},"reference-count":22,"publisher":"SAGE Publications","issue":"3","license":[{"start":{"date-parts":[[2021,2,10]],"date-time":"2021-02-10T00:00:00Z","timestamp":1612915200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/journals.sagepub.com\/page\/policies\/text-and-data-mining-license"}],"content-domain":{"domain":["journals.sagepub.com"],"crossmark-restriction":true},"short-container-title":["Journal of Intelligent &amp; Fuzzy Systems"],"published-print":{"date-parts":[[2021,10,14]]},"abstract":"<jats:p>Network security issues have become increasingly prominent, and information security risk assessment is an important part of network security protection. Security risk assessment based on methods such as attack trees, attack graphs, neural networks, and fuzzy logic has problems such as difficulty in data collection during the assessment process, excessive reliance on expert experience, failure to consider the actual network environment, or ineffective joint application. The qualitative and quantitative information security fuzzy comprehensive evaluation method uses the theory of fuzzy mathematics to better solve the above problems, so that the evaluation method is scientific, comprehensive and operable. To improve the accuracy of information security risk assessment in wireless sensor networks, we propose a fuzzy comprehensive evaluation method based on Bayesian attack graphs. This considers the impact of environmental factors of the assessed system on security risk and the spread of the effects on the Bayesian network. Therefore, this model can reflect possible situations due to network attacks in the wireless sensor network system. The results show that this quantitative evaluation method is applicable to assessing risk in wireless sensor network systems, and the results are more objective and accurate.<\/jats:p>","DOI":"10.3233\/jifs-189711","type":"journal-article","created":{"date-parts":[[2021,2,12]],"date-time":"2021-02-12T11:14:00Z","timestamp":1613128440000},"page":"4511-4517","update-policy":"https:\/\/doi.org\/10.1177\/sage-journals-update-policy","source":"Crossref","is-referenced-by-count":9,"title":["Information security assessment of wireless sensor networks based on bayesian attack graphs"],"prefix":"10.1177","volume":"41","author":[{"given":"You Ying","family":"Chen","sequence":"first","affiliation":[{"name":"School of Mathematic and Computer Science, Guangdong Ocean University, Guangdong, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bing","family":"Xu","sequence":"additional","affiliation":[{"name":"School of Computer Science, Guangdong University of Petrochemical Technology, Guangdong, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jun","family":"Long","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, Yulin Normal University, Guangxi, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"179","published-online":{"date-parts":[[2021,2,10]]},"reference":[{"issue":"4","key":"e_1_3_2_2_2","first-page":"212","article-title":"A centralized energy efficient distance based routing protocol for wireless sensor networks","volume":"21","author":"Gawade D.R.","year":"2016","unstructured":"GawadeD.R. and NalbalwarS.L., A centralized energy efficient distance based routing protocol for wireless sensor networks, Journal of Sensors21(4) (2016), 212\u2013216.","journal-title":"Journal of Sensors"},{"issue":"7","key":"e_1_3_2_3_2","first-page":"113","article-title":"Network threat assessment based on attack graph and fuzzy comprehensive evaluation","volume":"11","author":"Luo Y.L.","year":"2020","unstructured":"LuoY.L. and ChangX.L., Network threat assessment based on attack graph and fuzzy comprehensive evaluation, Cyberspace Security11(7) (2020), 113\u2013119.","journal-title":"Cyberspace Security"},{"issue":"12","key":"e_1_3_2_4_2","first-page":"93","article-title":"Fuzzy comprehensive assessment of information security from qualitative to quantitative","volume":"26","author":"Sun W.H.","year":"2006","unstructured":"SunW.H. and HeD.Q., Fuzzy comprehensive assessment of information security from qualitative to quantitative, Systems Engineering Theory and Practice26(12) (2006), 93\u201398.","journal-title":"Systems Engineering Theory and Practice"},{"key":"e_1_3_2_5_2","doi-asserted-by":"publisher","unstructured":"LiW. Business Security Assessment Information Security and Communication Security (8) (2012) 113\u2013115. DOI:10.3969\/j.issn.1009-8054.2012.08.046","DOI":"10.3969\/j.issn.1009-8054.2012.08.046"},{"key":"e_1_3_2_6_2","unstructured":"WangB.D. Research on Network Security Risk Assessment New Course (Teaching and Research Edition) (6) (2010) 329\u2013330."},{"key":"e_1_3_2_7_2","doi-asserted-by":"crossref","unstructured":"SolomonA. KetikidisP. and ChoudharyA. A knowledge based approach for handling supply chain riskmanagement In Proceedings of the Fifth Balkan Conference in Informatics (BCI \u201912). ACM New York NY USA (2012) 70\u201375.","DOI":"10.1145\/2371316.2371330"},{"key":"e_1_3_2_8_2","doi-asserted-by":"crossref","unstructured":"NathH.V. GangadharanK. and SethumadhavanM. Reconciliation engine and metric for network vulnerability assessment In Proceedings of the First International Conference on Security of Internet of Things (SecurIT \u201912). ACM New York NY USA (2012) 9\u201321.","DOI":"10.1145\/2490428.2490430"},{"key":"e_1_3_2_9_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2011.34"},{"key":"e_1_3_2_10_2","doi-asserted-by":"crossref","unstructured":"AgarwalP.K. KaplanH. and SharirM. Union of random minkowski sums and network vulnerability analysis In Proceedings of the twenty-ninth annual symposium on Computational geometry (SoCG\u201913). ACM NewYork NY USA (2013) 177\u2013186.","DOI":"10.1145\/2462356.2462398"},{"key":"e_1_3_2_11_2","doi-asserted-by":"crossref","unstructured":"BleikertzM.S. ProbstC.W. PendarakisD. and ErikssonK. Security audits of multi-tier virtual infrastructures in public infrastructure clouds In Proceedings of the 2010 ACM workshop on Cloud computing security workshop (CCSW \u201910). ACM New York NY USA (2010) 93\u2013102.","DOI":"10.1145\/1866835.1866853"},{"issue":"3","key":"e_1_3_2_12_2","first-page":"290","article-title":"Network security risk assessment method: a review","volume":"44","author":"Zhang B.","year":"2020","unstructured":"ZhangB., RenJ.D. and WangN., Network security risk assessment method: a review, Journal of Yanshan University44(3) (2020), 290\u2013305.","journal-title":"Journal of Yanshan University"},{"issue":"2","key":"e_1_3_2_13_2","first-page":"31","article-title":"A dynamic risk assessment method based on hidden Markov model","volume":"17","author":"Liu C.-H.","year":"2012","unstructured":"LiuC.-H. and ZhangX.-F., A dynamic risk assessment method based on hidden Markov model, Journal of Xi\u2019 an University of Posts and Telecommunications17(2) (2012), 31\u201336.","journal-title":"Journal of Xi\u2019 an University of Posts and Telecommunications"},{"key":"e_1_3_2_14_2","doi-asserted-by":"crossref","unstructured":"ZhangB.Y. ChenZ.G. YanX.A. WangS.L. and FanQ. Network security situation assessment based on hidden semi-markov model In Proceedings of the 7th international conference on Advanced Intelligent Computing (ICIC\u201911) De-Shuang Huang Yong Gan Vitoantonio Bevilacqua and Juan Carlos Figueroa (Eds.). Springer-Verlag Berlin Heidelberg (2011) 509\u2013516.","DOI":"10.1007\/978-3-642-24728-6_69"},{"key":"e_1_3_2_15_2","doi-asserted-by":"publisher","DOI":"10.1162\/evco.2009.17.1.55"},{"issue":"3","key":"e_1_3_2_16_2","first-page":"81","article-title":"Network security risk assessment method based on Bayesian attack graph","volume":"32","author":"Wang Z.G.","year":"2018","unstructured":"WangZ.G., LuY. and LiJ.D., Network security risk assessment method based on Bayesian attack graph, Journal of Academy of Armored Force Engineering32(3) (2018), 81\u201386.","journal-title":"Journal of Academy of Armored Force Engineering"},{"issue":"6","key":"e_1_3_2_17_2","first-page":"11","article-title":"Risk assessment method for network attack surface based on Bayesian attack graph","volume":"4","author":"Zhou Y.Y.","year":"2018","unstructured":"ZhouY.Y., ChengG. and GuoC.S., Risk assessment method for network attack surface based on Bayesian attack graph, Chinese Journal of Network and Information Security4(6) (2018), 11\u201322.","journal-title":"Chinese Journal of Network and Information Security"},{"key":"e_1_3_2_18_2","unstructured":"SenA. and MadriaS. Risk Assessment in a Sensor Cloud Framework Using Attack Graphs IEEE Transactions on Services Computing (99) (2017) 1\u20131."},{"key":"e_1_3_2_19_2","doi-asserted-by":"crossref","unstructured":"WangJ. FanK. MoW. et al. A Method for Information Security Risk Assessment Based on the Dynamic Bayesian Network International Conference on Networking & Network Applications (2016) 279\u2013283.","DOI":"10.1109\/NaNA.2016.50"},{"issue":"11","key":"e_1_3_2_20_2","first-page":"121","article-title":"Survey on application of attack graph technology","volume":"38","author":"Ye Z.W.","year":"2017","unstructured":"YeZ.W., GuoY.B., WangC.D., et al., Survey on application of attack graph technology, Journal on Commuications38(11) (2017), 121\u2013132.","journal-title":"Journal on Commuications"},{"key":"e_1_3_2_21_2","doi-asserted-by":"crossref","unstructured":"NguyenT.H. WrightM. WellmanM.P. et al. Multi-stage attack graph secunity games: heuristic strategies with empirical game-theoretic analysis ACM Workshop on Moving Target Defense (2017) 87\u201397.","DOI":"10.1145\/3140549.3140562"},{"key":"e_1_3_2_22_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2017.03.052"},{"issue":"11","key":"e_1_3_2_23_2","first-page":"125","article-title":"Optimal security hardening measures selection model based on Bayesian attack graph","volume":"52","author":"Gao N.","year":"2016","unstructured":"GaoN., GaoL., HeY.Y., et al., Optimal security hardening measures selection model based on Bayesian attack graph, Computer Engineering and Applications52(11) (2016), 125\u2013130.","journal-title":"Computer Engineering and Applications"}],"container-title":["Journal of Intelligent &amp; Fuzzy Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/journals.sagepub.com\/doi\/pdf\/10.3233\/JIFS-189711","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/journals.sagepub.com\/doi\/full-xml\/10.3233\/JIFS-189711","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/journals.sagepub.com\/doi\/pdf\/10.3233\/JIFS-189711","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T09:43:24Z","timestamp":1777455804000},"score":1,"resource":{"primary":{"URL":"https:\/\/journals.sagepub.com\/doi\/10.3233\/JIFS-189711"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,2,10]]},"references-count":22,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2021,10,14]]}},"alternative-id":["10.3233\/JIFS-189711"],"URL":"https:\/\/doi.org\/10.3233\/jifs-189711","relation":{},"ISSN":["1064-1246","1875-8967"],"issn-type":[{"value":"1064-1246","type":"print"},{"value":"1875-8967","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,2,10]]}}}