首页> 外文会议> >ADEPTS: adaptive intrusion response using attack graphs in an e-commerce environment
【24h】

ADEPTS: adaptive intrusion response using attack graphs in an e-commerce environment

机译:ADEPTS:在电子商务环境中使用攻击图的自适应入侵响应

获取原文
获取外文期刊封面目录资料

摘要

Distributed systems with multiple interacting services, especially e-commerce systems, are suitable targets for malicious attacks because of the potential financial impact. Compared to intrusion detection, automated response has received relatively less attention. In this paper, we present the design of automated response mechanisms in an intrusion tolerant system called ADEPTS. Our focus is on enforcing containment in the system, thus localizing the intrusion and allowing the system to provide service, albeit degraded. ADEPTS uses a graph of intrusion goals, called I-GRAPH, as the underlying representation in the system. In response to alerts from an intrusion detection framework, ADEPTS executes algorithms to determine the spread of the intrusion and the appropriate responses to deploy. A feedback mechanism evaluates the success of a deployed response and uses that in guiding future choices. ADEPTS is demonstrated on a distributed e-commerce system and evaluated using a survivability metric.
机译:具有多种交互服务的分布式系统,特别是电子商务系统,由于潜在的财务影响,因此是进行恶意攻击的合适目标。与入侵检测相比,自动响应受到的关注相对较少。在本文中,我们介绍了在称为ADEPTS的入侵容忍系统中的自动响应机制的设计。我们的重点是在系统中强制实施遏制,从而对入侵进行定位并允许系统提供服务(尽管已降级)。 ADEPTS使用称为I-GRAPH的入侵目标图作为系统中的基础表示。响应来自入侵检测框架的警报,ADEPTS执行算法以确定入侵的蔓延以及适当的部署响应。反馈机制评估已部署响应的成功,并将其用于指导未来的选择。 ADEPTS在分布式电子商务系统上进行了演示,并使用生存能力度量标准进行了评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号