【24h】

Quantification of Moving Target Cyber Defenses

机译:移动目标网络防御的量化

获取原文

摘要

Current network and information systems are static, making it simple for attackers to maintain an advantage. Adaptive defenses, such as Moving Target Defenses (MTD) have been developed as potential "game-changers" in an effort to increase the attacker's workload. With many new methods being developed, it is difficult to accurately quantify and compare their overall costs and effectiveness. This paper compares the tradeoffs between current approaches to the quantification of MTDs. We present results from an expert opinion survey on quantifying the overall effectiveness, upfront and operating costs of a select set of MTD techniques. We find that gathering informed scientific opinions can be advantageous for evaluating such new technologies as it offers a more comprehensive assessment. We end by presenting a coarse ordering of a set of MTD techniques from most to least dominant. We found that seven out of 23 methods rank as the more dominant techniques. Five of which are techniques of either address space layout randomization or instruction set randomization. The remaining two techniques are applicable to software and computer platforms. Among the techniques that performed the worst are those primarily aimed at network randomization.
机译:当前的网络和信息系统是静态的,使攻击者保持良好的优势。自适应防御,例如移动目标防御(MTD)被开发为潜在的“游戏变化器”,以增加攻击者的工作量。通过开发许多新方法,难以准确地量化并比较其整体成本和效率。本文将电流与MTD的量化的措施进行了比较。我们提出了专家舆论调查的结果,这些调查量化了一套MTD技术的整体有效性,前期和运营成本。我们发现收集信息知情科学意见可能是有利的,对这些新技术进行评估,因为它提供更全面的评估。我们通过呈现来自大多数最不占主导地位的一组MTD技术的粗略订购。我们发现七种方法中的七种方法排名为更大的技术。其中五是地址空间布局随机化或指令集随机化的技术。其余的两种技术适用于软件和计算机平台。在执行最坏的技术中,最糟糕的是主要针对网络随机化的那些。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号