arrow
Return

Dynamic countermeasures selection for multi-path attacks

delete2020-10-01
delete10
PRE
AI
李风华 (Fenghua Li)
李永军 (Yongjun Li)
S
Siyuan Leng
Y
Yunchuan Guo
K
Kui Geng
Z
Zhen Wang
方亮 cover
方亮 (Liang Fang) *
DOI:10.1016/j.cose.2020.101927delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Multi-step attacks have been widely adopted by attackers, resulting in privacy leakage. Although many cost-sensitive approaches have been proposed to respond to the multi-step attacks, most studies have lack global optimization and ignored the fact that attackers may take multiple paths to launch multi-step attacks, which may lead to an over-response or an under-response. To address this problem, we formulate a response to multi-path attacks as an optimization problem and prove it is NP-hard. To obtain a feasible solution to the problem, we first identify suspicious attack paths and evaluate several metrics (i.e., security benefit, deployment cost, and negative impact on the quality of services) of the countermeasures. Specifically, by considering the compositions and cover degrees of atomic attacks, we define Attacks Surface Coverage to accurately evaluate the security benefit of countermeasures. Then, we propose an improved greedy algorithm to select reasonable countermeasures. Experimental results demonstrate the effectiveness and feasibility of our approach. (c) 2020 Elsevier Ltd. All rights reserved.
Keywords:
Intrusion response
Countermeasures selection
Multi-path attack
Probabilistic attack-response tree
Attacks surface coverage
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

C
chinese academy of sciences
Scholars:
56.3W
Papers: 44.8W
Citations: 704