...
首页> 外文期刊>Performance evaluation review >On the Efficiency of Sampling and Countermeasures to Critical-Infrastructure-Targeted Malware Campaigns
【24h】

On the Efficiency of Sampling and Countermeasures to Critical-Infrastructure-Targeted Malware Campaigns

机译:关于针对关键基础设施的恶意软件攻击的抽样效率和对策

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Ensuring system survivability in the wake of advanced persistent threats is a big challenge that the security community is facing to ensure critical infrastructure protection. In this paper, we define metrics and models for the assessment of coordinated massive malware campaigns targeting critical infrastructure sectors. First, we develop an analytical model that allows us to capture the effect of neighborhood on different metrics (e.g., infection probability and contagion probability). Then, we assess the impact of putting operational but possibly infected nodes into quarantine. Finally, we study the implications of scanning nodes for early detection of malware (e.g., worms), accounting for false positives and false negatives. Evaluating our methodology using an hierarchical topology typical of factory automation networks, we find that malware infections can be effectively contained by using quarantine and appropriate rates of scanning for soft impacts.
机译:确保先进的持续威胁后的系统生存能力是安全社区要确保关键基础架构保护所面临的巨大挑战。在本文中,我们定义了指标和模型,用于评估针对关键基础设施领域的大规模协同恶意软件活动。首先,我们开发一个分析模型,使我们能够捕获邻域对不同指标(例如,感染概率和传染概率)的影响。然后,我们评估将可操作但可能已感染的节点放入隔离区的影响。最后,我们研究了扫描节点对恶意软件(例如蠕虫)的早期检测的影响,其中包括误报和误报。使用工厂自动化网络的典型拓扑结构评估我们的方法,我们发现可以通过使用隔离区和适当的软影响扫描率来有效地遏制恶意软件感染。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号