首页> 外文会议>IEEE International Conference on Intelligence and Security Informatics >Using cyber defense exercises to obtain additional data for attacker profiling
【24h】

Using cyber defense exercises to obtain additional data for attacker profiling

机译:使用网络防御演习获取攻击者配置文件的其他数据

获取原文

摘要

In order to be able to successfully defend an IT system it is useful to have an accurate appreciation of the cyber threat that goes beyond stereotypes. To effectively counter potentially decisive and skilled attackers it is necessary to understand, or at least model, their behavior. Although the real motives for untraceable anonymous attackers will remain a mystery, a thorough understanding of their observable actions can still help to create well-founded attacker profiles that can be used to design effective countermeasures and in other ways enhance cyber defense efforts. In recent work empirically founded attacker profiles, so-called attacker personas, have been used to assess the overall threat situation for an organization. In this paper we elaborate on 1) the use of attacker personas as a technique for attacker profiling, 2) the design of tailor-made cyber defense exercises for the purpose of obtaining the necessary empirical data for the construction of such attacker personas, and 3) how attacker personas can be used for enhancing the situational awareness within the cyber domain. The paper concludes by discussing the possibilities and limitations of using cyber defense exercises for data gathering, and what can and cannot be studied in such exercises.
机译:为了能够成功防御IT系统,准确了解超越定型观念的网络威胁非常有用。为了有效地对付潜在的决定性和熟练的攻击者,有必要了解或至少模拟其行为。尽管无法追踪的匿名攻击者的真正动机仍然是个谜,但是对他们的可观察行动的透彻了解仍然可以帮助创建有充分根据的攻击者资料,这些资料可用于设计有效的对策,并以其他方式增强网络防御的作用。在最近的工作中,凭经验建立的攻击者资料(所谓的攻击者角色)已用于评估组织的总体威胁情况。在本文中,我们详细阐述以下内容:1)使用攻击者角色作为攻击者配置文件的技术; 2)设计量身定制的网络防御演习,以获取构建此类攻击者角色所需的经验数据;以及3 )如何利用攻击者的角色来增强网络领域内的态势感知。本文最后通过讨论使用网络防御演习进行数据收集的可能性和局限性,以及在这种演习中可以研究和不能研究的内容。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号