首页> 外文会议>International conference on critical information infrastructures security >Effective Defence Against Zero-Day Exploits Using Bayesian Networks
【24h】

Effective Defence Against Zero-Day Exploits Using Bayesian Networks

机译:使用贝叶斯网络有效防御零日漏洞

获取原文

摘要

Industrial Control Systems (ICS) play a crucial role in controlling industrial processes. Unlike conventional IT systems or networks, cyber attacks against ICS can cause destructive physical damage. Zero-day exploits (i.e. unknown exploits) have demonstrated their essential contributions to causing such damage by Stuxnet. In this work, we investigate the possibility of improving the tolerance of a system against zero-day attacks by defending against known weaknesses of the system. We first propose a metric to measure the system tolerance against zero-day attacks, which is the minimum effort required by zero-day exploits to compromise a system. We then apply this metric to evaluate different defensive plans to decide the most effective one in maximising the system tolerance against zero-day attacks. A case study about ICS security management is demonstrated in this paper.
机译:工业控制系统(ICS)在控制工业过程中起着至关重要的作用。与传统的IT系统或网络不同,针对ICS的网络攻击可能会造成破坏性的物理损坏。零日漏洞(即未知漏洞)已证明其对Stuxnet造成此类破坏的重要贡献。在这项工作中,我们研究了通过防御系统的已知弱点来提高系统抵御零日攻击的能力的可能性。我们首先提出一种度量标准,以衡量系统对零日攻击的容忍度,这是零日攻击对系统造成危害所需的最低工作量。然后,我们使用此指标来评估不同的防御计划,以决定最有效的防御计划,以最大程度地提高系统对零日攻击的容忍度。本文以ICS安全管理为例进行了研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号