4.6 Article

Dynamic Optimal Countermeasure Selection for Intrusion Response System

期刊

出版社

IEEE COMPUTER SOC
DOI: 10.1109/TDSC.2016.2615622

关键词

Intrusion; response system; attack damage cost; vulnerabilities surface coverage; multi-objective optimization

资金

  1. Natural Sciences and Engineering Research Council of Canada Research Chair on Sustainable Smart Eco-Cloud [NSERC-950-229052]
  2. NSERCCRDPJ [424371-11]

向作者/读者索取更多资源

Designing an efficient defense framework is challenging with respect to a network's complexity, widespread sophisticated attacks, attackers' ability, and the diversity of security appliances. The Intrusion Response System (IRS) is intended to respond automatically to incidents by attuning the attack damage and countermeasure costs. The existing approaches inherit some limitations, such as using static countermeasure effectiveness, static countermeasure deployment cost, or neglecting the countermeasures' negative impact on service quality (QoS). These limitations may lead the IRS to select inappropriate countermeasures and deployment locations, which in turn may reduce network performance and disconnect legitimate users. In this paper, we propose a dynamic defense framework that selects an optimal countermeasure against different attack damage costs. To measure the attack damage cost, we propose a novel defense-centric model based on a service dependency graph. To select the optimal countermeasure dynamically, we formulate the problem at hand using a multi-objective optimization concept that maximizes the security benefit, minimizes the negative impact on users and services, and minimizes the security deployment cost with respect to the attack damage cost.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.6
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据