首页> 外文会议>International Conference on Critical Information Infrastructures Security >Effective Defence Against Zero-Day Exploits Using Bayesian Networks
【24h】

Effective Defence Against Zero-Day Exploits Using Bayesian Networks

机译:使用贝叶斯网络防止零日利用的有效防御

获取原文

摘要

Industrial Control Systems (ICS) play a crucial role in controlling industrial processes. Unlike conventional IT systems or networks, cyber attacks against ICS can cause destructive physical damage. Zero-day exploits (i.e. unknown exploits) have demonstrated their essential contributions to causing such damage by Stuxnet. In this work, we investigate the possibility of improving the tolerance of a system against zero-day attacks by defending against known weaknesses of the system. We first propose a metric to measure the system tolerance against zero-day attacks, which is the minimum effort required by zero-day exploits to compromise a system. We then apply this metric to evaluate different defensive plans to decide the most effective one in maximising the system tolerance against zero-day attacks. A case study about ICS security management is demonstrated in this paper.
机译:工业控制系统(IC)在控制工业过程中发挥至关重要的作用。与传统的IT系统或网络不同,对IC的网络攻击可能导致破坏性的物理损坏。零日漏洞(即未知的漏洞利用)已经证明了他们通过努力造成这种伤害的基本贡献。在这项工作中,我们通过防止系统的已知弱点来调查改善系统对零日攻击的容忍度的可能性。我们首先提出了一个指标来测量对零日攻击的系统容忍度,这是零日利用来抑制系统所需的最低工作。然后,我们将此指标应用于评估不同的防御计划,以确定最有效的计划,以最大化对零零攻击的系统容忍度。本文证明了关于ICS安全管理的案例研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号