首页> 外文会议>IEEE Military Communications Conference >An autonomous resiliency toolkit - needs, challenges, and concepts for next generation cyber defense platforms
【24h】

An autonomous resiliency toolkit - needs, challenges, and concepts for next generation cyber defense platforms

机译:一个自主弹性工具包 - 下一代网络防御平台的需求,挑战和概念

获取原文

摘要

Cyber defense today relies heavily on teams of Subject Matter Experts (SMEs), e.g., Cyber Protection Teams (CPTs). Although simple tasks can be automated or scripted, complex decision processes-increasingly needed to counter cyber threats-require SME insight and manual execution. As a result, cyber-defense operations tend to emphasize collection and archiving of data over real-time decision making and response, postponing actionable analysis and response until later, where “later” is frequently “too late.” In contrast, adversaries are readily using automation tools to minimize manual work and encapsulate autonomous behaviors into botnets and viruses that adapt to changing conditions. This imbalance puts the adversary in a position of advantage, a situation the research presented in this paper aims to remedy. The scarcity of cyber SMEs and the high cost of involving them in manual cyber responses are among the main factors contributing to the imbalance. The approach we describe aims to reduce the reliance on human SMEs, drive down the cost, and increase the effectiveness of CPTs by capturing expert knowledge in a tool that will automate the identification of known and unknown threats and the launching of mitigations to counter ongoing attacks at system speeds.
机译:今天的网络防守依赖于主题专家(中小企业)的团队,例如网络保护团队(CPTS)。虽然简单的任务可以是自动的或脚本,但复杂的决策过程 - 越来越需要抵消网络威胁 - 要求中小企业洞察力和手动执行。因此,网络防御操作倾向于强调数据收集和存档数据通过实时决策和响应,推迟可操作的分析和响应,直到以后,“后来”经常“为时已晚。”相比之下,对手很容易使用自动化工具,以最大限度地减少手动工作并将自治行为封装到适应变化条件的僵尸网络和病毒中。这种不平衡使对手在优势地位,本文提出的研究旨在补救。网络中小企业的稀缺性和参与手工网络反应中的高成本是有助于不平衡的主要因素。我们描述的方法旨在减少对人类中小企业的依赖,降低成本,并通过捕获一个工具的专家知识来提高CPTS的有效性,这将使知名和未知的威胁和发射减轻来抵消正在进行的攻击在系统速度下。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号