首页> 外文期刊>Future generation computer systems >Intelligent defense using pretense against targeted attacks in cloud platforms
【24h】

Intelligent defense using pretense against targeted attacks in cloud platforms

机译:使用防御防范云平台中的针对性攻击的智能防御

获取原文
获取原文并翻译 | 示例
           

摘要

Cloud-hosted services are being increasingly used in online businesses in e.g., retail, healthcare, manufacturing, entertainment due to benefits such as scalability and reliability. These benefits are fueled by innovations in orchestration of cloud platforms that make them programmable as Software Defined everything Infrastructures (SDxI). At the same time, sophisticated targeted attacks such as Distributed Denial-of-Service (DDoS) and Advanced Persistent Threats (APTs) are growing on an unprecedented scale threatening the availability of online businesses. In this paper, we present a novel defense system called Dolus to mitigate the impact of targeted attacks launched against high-value services hosted in SDxI-based cloud platforms. Our Dolus system is able to initiate a 'pretense' in a scalable and collaborative manner to deter the attacker based on threat intelligence obtained from attack feature analysis. Using foundations from pretense theory in child play, Dolus takes advantage of elastic capacity provisioning via 'quarantine virtual machines' and SDxI policy co-ordination across multiple network domains to deceive the attacker by creating a false sense of success. We evaluate the efficacy of Dolus using a GENI Cloud testbed and demonstrate its real-time capabilities to: (a) detect DDoS and APT attacks and redirect attack traffic to quarantine resources to engage the attacker under pretense, (b) coordinate SDxI policies to possibly block attacks closer to the attack source(s). (C) 2018 Elsevier B.V. All rights reserved.
机译:由于可扩展性和可靠性等优点,云托管服务正越来越多地用于零售,医疗保健,制造,娱乐等在线业务中。这些优势得益于云平台编排的创新,这些创新使它们可以作为软件定义的所有基础架构(SDxI)进行编程。同时,诸如分布式拒绝服务(DDoS)和高级持久威胁(APT)之类的复杂目标攻击正以前所未有的规模增长,威胁着在线业务的可用性。在本文中,我们提出了一种称为Dolus的新型防御系统,以减轻针对基于SDxI的云平台中托管的高价值服务发起的针对性攻击的影响。我们的Dolus系统能够以可扩展和协作的方式启动“伪装”,以根据从攻击特征分析获得的威胁情报来阻止攻击者。 Dolus在儿童游戏中使用假装理论的基础,利用通过“隔离虚拟机”和跨多个网络域的SDxI策略协调提供弹性容量的优势,通过制造错误的成功感来欺骗攻击者。我们使用GENI Cloud测试床评估Dolus的功效,并演示其实时功能,以:(a)检测DDoS和APT攻击,并将攻击流量重定向到隔离资源,以假装攻击者,(b)协调SDxI策略,以便阻止更靠近攻击源的攻击。 (C)2018 Elsevier B.V.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号