首页> 外文期刊>Journal of management information systems >Risks and Benefits of Signaling Information System Characteristics to Strategic Attackers
【24h】

Risks and Benefits of Signaling Information System Characteristics to Strategic Attackers

机译:向战略攻击者传达信息系统特征的风险和收益

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

The paper uses a game-theoretic setting to examine the interaction between strategic attackers who try to gain unauthorized access to information systems, or "targets," and defenders of those targets. Our analysis of the attacker-defender interaction shows that well-protected targets can use signals of their superior level of protection as a deterrence tool. This is due to the fact that, all other things being equal, rational attackers motivated by potential financial gains tend to direct their effort toward less-protected targets. We analyze several scenarios differing in the scope of publicly available information about target parameters and discuss conditions under which greater defenders' ability to signal their security characteristics may improve their welfare. Our results may assist security researchers in devising better defense strategies through the use of deterrence and provide new insight about the efficacy of specific security practices in complex information security environments.
机译:本文使用博弈论的方法来研究试图获得未经授权访问信息系统或“目标”的战略攻击者与这些目标的防御者之间的相互作用。我们对攻击者与防御者之间的互动的分析表明,受到良好保护的目标可以使用其出色防护水平的信号作为威慑工具。这是由于以下事实:在所有其他条件相同的情况下,受潜在经济利益驱动的理性攻击者倾向于将努力指向受保护程度较低的目标。我们分析了有关目标参数的公开信息范围不同的几种情况,并讨论了在哪些条件下更大的防御者可以用信号表明其安全特征来改善其福利。我们的结果可能会帮助安全研究人员通过使用威慑力来设计更好的防御策略,并提供有关特定安全实践在复杂信息安全环境中的效力的新见解。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号