...
首页> 外文期刊>Future generation computer systems >Model-based evaluation of combinations of Shuffle and Diversity MTD techniques on the cloud
【24h】

Model-based evaluation of combinations of Shuffle and Diversity MTD techniques on the cloud

机译:基于模型的云层和多样性MTD技术的组合评估

获取原文
获取原文并翻译 | 示例

摘要

Regardless of cloud computing capabilities, security is still one of the biggest threats in the cloud. Moving Target Defense (MTD) has shown to be an effective security mechanism to secure the cloud by changing the attack surface to make uncertainties for the attackers. In this paper, we propose a combination of two MTD techniques: Shuffle and Diversity which we believe further attributes to reduce the cyber attack surface. We first provide the formal definitions of the combination to design and implement our proposal. Then, we investigate a number of approaches in which Shuffle and Diversity can be combined in order to provide the most effective defense. Towards, we utilize Network Centrality Measures (NCMs) to find out the most critical component in the cloud. Then, we evaluate the proposed MTD techniques through formal Graphical Security Models (GSM) and quantify the cloud security level through security metrics before and after deploying the MTD techniques. Our experimental evaluation shows that the combination of Shuffle and Diversity techniques can increase the security posture of the cloud.
机译:无论云计算能力如何,安全性仍然是云中最大的威胁之一。移动目标防御(MTD)已被证明是通过改变攻击表面来保护云以使攻击者的不确定性来保护云的有效安全机制。在本文中,我们提出了两种MTD技术的组合:我们相信减少网络攻击表面的进一步属性的洗牌和多样性。我们首先提供了设计和实施我们提案的组合的正式定义。然后,我们调查多种方法,其中可以组合洗车机和多样性,以便提供最有效的防御。朝上,我们利用网络中心度量(NCMS)来找出云中最关键的组件。然后,我们通过正式的图形安全模型(GSM)评估所提出的MTD技术,并通过部署MTD技术之前和之后通过安全度量来量化云安全级别。我们的实验评估表明,随机播放和多样性技术的组合可以提高云的安全姿势。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号