Dynamic defense strategy against advanced persistent threat under heterogeneous networks

被引:14
|
作者
Lv, Kun [1 ]
Chen, Yun [1 ]
Hu, Changzhen [1 ]
机构
[1] Beijing Inst Technol, Sch Comp Sci & Technol, Beijing, Peoples R China
关键词
Advanced persistent threat; Dynamic defense strategy; Game theory; Information fusion; Heterogeneous network; GAME; INFORMATION; FUSION; MODEL;
D O I
10.1016/j.inffus.2019.01.001
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Advanced persistent threats (APTs) pose a grave threat in cyberspace because of their long latency and concealment. In this paper, we propose a hybrid strategy game-based dynamic defense model to optimally allocate constrained secure resources for the target network. In addition, values of profits of players in this game are computed by a novel data-fusion method called NetF. Based on network protocols and log documents, the NetF deciphers data packets collected from different networks to natural language to make them comparable. Using this algorithm, data observed from the Internet and wireless sensor networks (WSNs) can be fused to calculate the comprehensive payoff of every node precisely. The Nash equilibrium can be computed using the value to detect the possibility of a node being a malicious node. Using this method, the dynamic optimal defense strategy can be allocated to every node at different times, which enhances the security of the target network obviously. In experiments, we illustrate the obtained results via case studies of a cluster of heterogeneous networks. The results guide planning of optimal defense strategies for different kinds of nodes at different times.
引用
收藏
页码:216 / 226
页数:11
相关论文
共 50 条
  • [1] Dynamic Defense Strategy against Advanced Persistent Threat with Insiders
    Hu, Pengfei
    Li, Hongxing
    Fu, Hao
    Cansever, Derya
    Mohapatra, Prasant
    2015 IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (INFOCOM), 2015,
  • [2] Impulsive Artificial Defense Against Advanced Persistent Threat
    Sun, Hao
    Yang, Xiaofan
    Yang, Lu-Xing
    Huang, Kaifan
    Li, Gang
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 3506 - 3516
  • [3] Defense Against Advanced Persistent Threat Through Data Backup and Recovery
    Yang, Lu-Xing
    Huang, Kaifan
    Yang, Xiaofan
    Zhang, Yushu
    Xiang, Yong
    Tang, Yuan Yan
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2021, 8 (03): : 2001 - 2013
  • [4] Heterogeneous Graph Transformer for Advanced Persistent Threat Classification in Wireless Networks
    Saheed, Kazeem
    Henna, Shagufta
    2023 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS, NFV-SDN, 2023, : 15 - 20
  • [5] Effective Repair Strategy Against Advanced Persistent Threat: A Differential Game Approach
    Yang, Lu-Xing
    Li, Pengdeng
    Zhang, Yushu
    Yang, Xiaofan
    Xiang, Yong
    Zhou, Wanlei
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2019, 14 (07) : 1713 - 1728
  • [6] Optimal Repair Strategy Against Advanced Persistent Threats Under Time-Varying Networks
    Wang, Zixuan
    Li, Jiliang
    Wang, Yuntao
    Su, Zhou
    Yu, Shui
    Meng, Weizhi
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 5964 - 5979
  • [7] Predictive Cyber Defense Remediation against Advanced Persistent Threat in Cyber-Physical Systems
    Hasanl, Kamrul
    Shetty, Sachin
    Islam, Tariqul
    Ahmed, Imtiaz
    2022 31ST INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS (ICCCN 2022), 2022,
  • [8] Defense for Advanced Persistent Threat with Inadvertent and Malicious Insider Threats
    Chen, Ziqin
    Chen, Guanpu
    Hong, Yiguang
    UNMANNED SYSTEMS, 2024, 12 (02) : 341 - 358
  • [9] Threat Intelligence Sharing Community: A countermeasure against Advanced Persistent Threat
    Chandel, Sonali
    Yan, Mengdi
    Chen, Shaojun
    Jiang, Huan
    Ni, Tian-Yi
    2019 2ND IEEE CONFERENCE ON MULTIMEDIA INFORMATION PROCESSING AND RETRIEVAL (MIPR 2019), 2019, : 353 - 359
  • [10] Modeling and study of defense outsourcing against advanced persistent threat through impulsive differential game approach
    Qin, Yang
    Yang, Xiaofan
    Yang, Lu-Xing
    Huang, Kaifan
    COMPUTERS & SECURITY, 2024, 145