A Software-Defined Approach for Mitigating Insider and External Threats via Moving Target Defense

被引:0
|
作者
d'Ambrosio, Nicola [1 ]
Melluso, Emma [1 ]
Perrone, Gaetano [1 ]
Romano, Simon Pietro [1 ]
机构
[1] Univ Naples Federico II, Dept Elect Engn & Informat Technol, Naples, Italy
关键词
Moving Target Defense; Active Deception; Honeynet; Software Defined Network; Insider Threats;
D O I
10.1109/NFV-SDN59219.2023.10329613
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
In cyberspace conflicts, defenders face a significant disadvantage. A single mistake in a defense strategy could irreparably compromise a network infrastructure, while attackers can persistently search for vulnerabilities to exploit. Moreover, adversaries can learn from their errors and refine their methods for subsequent attempts. To bridge this gap, deception techniques such as Active Deception (AD) and Moving Target Defense (MTD) have been introduced as an additional layer of defense to enhance traditional cyber-defense strategies. These techniques aim to deceive attackers, detect their activities, and gather intelligence on their attack methodologies. Existing literature focuses on mitigating specific adversarial strategies, such as scanning or service exploitation, rather than providing a comprehensive defense mechanism against diverse threats from both internal and external sources. To tackle this challenge, our approach leverages the combined capabilities of MTD and honeypots to bolster the security of an enterprise network and gain valuable insights into the attacker's behavior. The system accurately detects the attacker's scanning and exploitation activities, redirecting all their connections towards a Honeynet for further analysis and protection of critical assets. Additionally, proactive and reactive port hopping techniques are strategically employed to confuse and mislead the attacker. Through the implementation of these techniques, our goal is to fortify network defenses, increase the complexity faced by potential attackers, and acquire valuable knowledge about their tactics.
引用
收藏
页码:213 / 219
页数:7
相关论文
共 50 条
  • [1] Look Again, Neo: A Software-Defined Networking Moving Target Defense
    Mayer, Samuel
    Reith, Mark
    Mullins, Barry
    [J]. PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2018), 2018, : 602 - 610
  • [2] Attack Graph-Based Moving Target Defense in Software-Defined Networks
    Yoon, Seunghyun
    Cho, Jin-Hee
    Kim, Dong Seong
    Moore, Terrence J.
    Free-Nelson, Frederica
    Lim, Hyuk
    [J]. IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2020, 17 (03): : 1653 - 1668
  • [3] Securing Software-Defined Networks Through Adaptive Moving Target Defense Capabilities
    Silva, Felipe Dantas S.
    Neto, Emidio P.
    Nunes, Rodrigo S. S.
    Souza, Cristian H. M.
    Neto, Augusto J. V.
    Pascoal, Tulio
    [J]. JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2023, 31 (03)
  • [4] Frequency-Minimal Moving Target Defense using Software-Defined Networking
    Debroy, Saptarshi
    Calyam, Prasad
    Nguyen, Minh
    Stage, Allen
    Georgiev, Vladimir
    [J]. 2016 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2016,
  • [5] Securing Software-Defined Networks Through Adaptive Moving Target Defense Capabilities
    Felipe S. Dantas Silva
    Emidio P. Neto
    Rodrigo S. S. Nunes
    Cristian H. M. Souza
    Augusto J. V. Neto
    Túlio Pascoal
    [J]. Journal of Network and Systems Management, 2023, 31
  • [6] Random Host and Service Multiplexing for Moving Target Defense in Software-Defined Networks
    Sharma, Dilli P.
    Cho, Jin-Hee
    Moore, Terrence J.
    Nelson, Frederica F.
    Lim, Hyuk
    Kim, Dong Seong
    [J]. ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2019,
  • [7] Performance and Security Evaluation of a Moving Target Defense Based on a Software-Defined Networking Environment
    Kim, Minjune
    Cho, Jin-Hee
    Lim, Hyuk
    Moore, Terrence J.
    Nelson, Frederica F.
    Kim, Dan Dongseong
    [J]. 2022 IEEE 27TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC), 2022, : 119 - 129
  • [8] Dynamic Security Metrics for Software-Defined Network-based Moving Target Defense
    Sharma, Dilli P.
    Enoch, Simon Yusuf
    Cho, Jin-Hee
    Moore, Terrence J.
    Nelson, Frederica F.
    Lim, Hyuk
    Kim, Dong Seong
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 170
  • [9] A Novel Moving Target Defense Technique to Secure Communication Links in Software-Defined Networks
    Almohaimeed, Abdulrahman
    Asaduzzaman, Abu
    [J]. PROCEEDINGS OF THE 2019 FIFTH INTERNATIONAL CONFERENCE ON MOBILE AND SECURE SERVICES (MOBISECSERV), 2019,
  • [10] Towards Dynamically Shifting Cyber Terrain With Software-Defined Networking and Moving Target Defense
    Larkin, Robert
    Jensen, Steven
    Koranek, Daniel
    Mullins, Barry
    Reith, Mark
    [J]. PROCEEDINGS OF THE 16TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2021), 2021, : 535 - 540