...
首页> 外文期刊>Connection Science >An adaptive defense mechanism to prevent advanced persistent threats
【24h】

An adaptive defense mechanism to prevent advanced persistent threats

机译:自适应防御机制,以防止先进的持续威胁

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

The expansion of information technology infrastructure is encountered with Advanced Persistent Threats (APTs), which can launch data destruction, disclosure, modification, and/or Denial of Service attacks by drawing upon vulnerabilities of software and hardware. Moving Target Defense (MTD) is a promising risk mitigation technique that replies to APTs via implementing randomisation and dynamic strategies on compromised assets. However, some MTD techniques adopt the blind random mutation, which causes greater performance overhead and worse defense utility. In this paper, we formulate the cyber-attack and defense as a dynamic partially observable Markov process based on dynamic Bayesian inference. Then we develop an Inference-Based Adaptive Attack Tolerance (IBAAT) system , which includes two stages. In the first stage, a forward-backward algorithm with a time window is employed to perform a security risk assessment. To select the defense strategy, in the second stage, the attack and defense process is modelled as a two-player general-sum Markov game and the optimal defense strategy is acquired by quantitative analysis based on the first stage. The evaluation shows that the proposed algorithm has about 10% security utility improvement compared to the state-of-the-art.
机译:通过绘制软件和硬件的漏洞,遇到了高级持久威胁(APTS),遇到了信息技术基础设施的扩展,可以通过绘制软件和硬件的漏洞来启动数据销毁,披露,修改和/或拒绝服务攻击。移动目标防御(MTD)是一个有前途的风险缓解技术,通过在受灾资产上实施随机化和动态战略来追回APTS。然而,一些MTD技术采用盲随机突变,这导致更大的性能开销和更差的防御实用。在本文中,我们将网络攻击和防御作为一种基于动态贝叶斯推断的动态部分观察的马尔可夫过程。然后我们开发基于推断的自适应攻击公差(IBAAT)系统,包括两个阶段。在第一阶段,采用具有时间窗口的前向后算法来执行安全风险评估。为了选择防御策略,在第二阶段,攻击和防御过程被建模为双人一般总和马尔可夫游戏,并且通过基于第一阶段的定量分析来获取最佳防御策略。评估表明,与最先进的算法相比,该算法具有大约10%的安全实用程序改进。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号