首页> 外文期刊>Computers & Security >Evaluating the effectiveness of shuffle and redundancy MTD techniques in the cloud
【24h】

Evaluating the effectiveness of shuffle and redundancy MTD techniques in the cloud

机译:评估云中洗牌和冗余MTD技术的有效性

获取原文
获取原文并翻译 | 示例

摘要

Moving Target Defense (MTD) is a defensive strategy to thwart adversaries by continuously shifting the attack surface. The MTD techniques can be applied to the cloud computing to make the cloud more unpredictable, hence more difficult to exploit. There are many MTD techniques proposed, and various metrics are used to measure their effectiveness. However, it is difficult to assess when MTD techniques are used in combinations. In this paper, we propose a formal security assessment approach to evaluate the effectiveness of combined MTD techniques using security modeling. We use security metrics, such as System Risk and Reliability, to evaluate those MTD techniques. In particular, we investigate how the security of the cloud change when two categories of MTD techniques, Shuffle and Redundancy, are used in combinations. We also explore approaches to find important components in the cloud using Network Centrality Measures and the size of the cloud and evaluate the trade-off between security and dependability in terms of the system Risk and Reliability, respectively. We show that combining the shuffle and redundancy MTD techniques could enhance the security of the cloud with the trade-off between the Risk and Reliability, which can be managed using the proposed security assessment approach.
机译:移动目标防御(MTD)是一种防御策略,通过不断转移攻击表面来阻止对手。 MTD技术可以应用于云计算,使云更加不可预测,因此更难以利用。提出了许多MTD技术,并使用各种度量来测量其有效性。但是,难以评估MTD技术在组合中使用。在本文中,我们提出了一种正式的安全评估方法来评估使用安全建模的MTD技术的有效性。我们使用安全指标,如系统风险和可靠性,以评估那些MTD技术。特别是,当两类MTD技术,随机和冗余时,我们研究了如何在组合中使用云的安全性。我们还探讨了使用网络中心测量和云大小在云中找到重要组成部分的方法,并在系统风险和可靠性方面评估安全性和可靠性之间的权衡。我们表明,组合随机播放和冗余MTD技术可以通过风险和可靠性之间的权衡来提高云的安全性,可以使用所提出的安全评估方法来管理。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号