Modeling self-propagating malware with epidemiological models

被引:3
|
作者
Chernikova, Alesia [1 ]
Gozzi, Nicolo [2 ]
Perra, Nicola [3 ]
Boboila, Simona [1 ]
Eliassi-Rad, Tina [1 ]
Oprea, Alina [1 ]
机构
[1] Northeastern Univ, Boston, MA 02115 USA
[2] ISI Fdn, Turin, Italy
[3] Queen Mary Univ London, Sch Math Sci, London, England
关键词
Self-propagating malware; Compartmental models; Epidemiology; Modeling; Dynamical systems; APPROXIMATE BAYESIAN COMPUTATION; MALICIOUS OBJECTS; IDENTIFIABILITY; TRANSMISSION; RANSOMWARE; SIMULATION; STABILITY; INFERENCE;
D O I
10.1007/s41109-023-00578-z
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Self-propagating malware (SPM) is responsible for large financial losses and major data breaches with devastating social impacts that cannot be understated. Well-known campaigns such as WannaCry and Colonial Pipeline have been able to propagate rapidly on the Internet and cause widespread service disruptions. To date, the propagation behavior of SPM is still not well understood. As result, our ability to defend against these cyber threats is still limited. Here, we address this gap by performing a comprehensive analysis of a newly proposed epidemiological-inspired model for SPM propagation, the Susceptible-Infected-Infected Dormant-Recovered (SIIDR) model. We perform a theoretical analysis of the SIIDR model by deriving its basic reproduction number and studying the stability of its disease-free equilibrium points in a homogeneous mixed system. We also characterize the SIIDR model on arbitrary graphs and discuss the conditions for stability of disease-free equilibrium points. We obtain access to 15 WannaCry attack traces generated under various conditions, derive the model's transition rates, and show that SIIDR fits the real data well. We find that the SIIDR model outperforms more established compartmental models from epidemiology, such as SI, SIS, and SIR, at modeling SPM propagation.
引用
收藏
页数:43
相关论文
共 50 条
  • [1] Modeling self-propagating malware with epidemiological models
    Alesia Chernikova
    Nicolò Gozzi
    Nicola Perra
    Simona Boboila
    Tina Eliassi-Rad
    Alina Oprea
    Applied Network Science, 8
  • [2] Self-propagating Malware Containment via Reinforcement Learning
    Eresheim, Sebastian
    Pasterk, Daniel
    MACHINE LEARNING AND KNOWLEDGE EXTRACTION (CD-MAKE 2021), 2021, 12844 : 35 - 50
  • [3] Cyber Network Resilience Against Self-Propagating Malware Attacks
    Chernikova, Alesia
    Gozzi, Nicolo
    Boboila, Simona
    Angadi, Priyanka
    Loughner, John
    Wilden, Matthew
    Perra, Nicola
    Eliassi-Rad, Tina
    Oprea, Alina
    COMPUTER SECURITY - ESORICS 2022, PT I, 2022, 13554 : 531 - 550
  • [4] Hotspots: The root causes of non-uniformity in self-propagating malware
    Cooke, Evan
    Mao, Z. Morley
    Jahanian, Farnam
    DSN 2006 INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, PROCEEDINGS, 2006, : 179 - 188
  • [5] ON THE NONUNIQUENESS OF SELF-PROPAGATING SPIRAL GALAXY MODELS
    FREEDMAN, WL
    MADORE, BF
    ASTROPHYSICAL JOURNAL, 1984, 280 (02): : 592 - 594
  • [6] Performance comparison of four anomaly detectors in detecting self-propagating malware on endpoints
    Ashfaq, Ayesha Binte
    Khayam, Syed Ali
    2008 INTERNATIONAL SYMPOSIUM ON BIOMETRICS AND SECURITY TECHNOLOGIES, 2008, : 104 - 112
  • [7] The Effect of Datagram Size and Susceptible Population on the Epidemiology of Fast Self-propagating Malware
    Tidy, Luc
    Woodhead, Steve
    2018 32ND INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2018, : 397 - 401
  • [8] PORTFILER: Port-Level Network Profiling for Self-Propagating Malware Detection
    Ongun, Talha
    Spohngellert, Oliver
    Miller, Benjamin
    Boboila, Simona
    Oprea, Alina
    Eliassi-Rad, Tina
    Hiser, Jason
    Nottingham, Alastair
    Davidson, Jack
    Veeraraghavan, Malathi
    2021 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2021, : 182 - 190
  • [9] Modeling self-propagating exothermic reactions in multilayer systems
    Jayaraman, S
    Mann, AB
    Knio, OM
    Van Heerden, D
    Bao, G
    Weihs, TP
    PHASE TRANSFORMATIONS AND SYSTEMS DRIVEN FAR FROM EQUILIBRIUM, 1998, 481 : 563 - 568
  • [10] Modeling of the self-propagating reactions of nickel and aluminum multilayered foils
    Gunduz, Ibrahim Emre
    Fadenberger, Konrad
    Kokonou, Maria
    Rebholz, Claus
    Doumanidis, Charalabos C.
    Ando, Teiichi
    JOURNAL OF APPLIED PHYSICS, 2009, 105 (07)