首页> 外文会议>ACM conference on Computer and communications security >Incentive-based modeling and inference of attacker intent, objectives, and strategies
【24h】

Incentive-based modeling and inference of attacker intent, objectives, and strategies

机译:基于激励的建模和攻击者意图,目标和策略的推断

获取原文

摘要

Although the ability to model and infer Attacker Intent, Objectives and Strategies (AIOS) may dramatically advance the literature of risk assessment, harm prediction, and predictive or proactive cyber defense, existing AIOS inference techniques are ad hoc and system or application specific. In this paper, we present a general incentive-based method to model AIOS and a game theoretic approach to infer AIOS. On one hand, we found that the concept of incentives can unify a large variety of attacker intents; the concept of utilities can integrate incentives and costs in such a way that attacker objectives can be practically modeled. On the other hand, we developed a game theoretic AIOS formalization which can capture the inherent inter-dependency between AIOS and defender objectives and strategies in such a way that AIOS can be automatically inferred. Finally, we use a specific case study to show how AIOS can be inferred in real world attack-defense scenarios.
机译:尽管能够建模和推断攻击者意图,目标和策略(AIOS)的能力可以极大地促进风险评估,危害预测以及预测性或主动性网络防御的文献,但现有的AIOS推断技术是临时性的,并且是系统或应用程序专用的。在本文中,我们提出了一种通用的基于激励的AIOS建模方法以及一种基于博弈论的方法来推断AIOS。一方面,我们发现激励的概念可以统一各种各样的攻击者意图。公用事业的概念可以将激励和成本整合在一起,从而可以对攻击者的目标进行实际建模。另一方面,我们开发了一种游戏理论上的AIOS形式化形式,该形式可以捕获AIOS与防御者目标和策略之间固有的相互依存关系,从而可以自动推断AIOS。最后,我们使用一个特定的案例研究来说明如何在现实世界的攻击防御场景中推断AIOS。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号