Moving target defense in cloud computing: A systematic mapping study

被引:20
|
作者
Torquato, Matheus [1 ,2 ]
Vieira, Marco [1 ]
机构
[1] Univ Coimbra, Dept Informat Engn, Coimbra, Portugal
[2] Fed Inst Alagoas, Campus Arapiraca, Arapiraca, Brazil
关键词
Moving target defense; Cloud computing; Systematic mapping; Cyber security; Network security; SIDE-CHANNEL ATTACKS; STRATEGY;
D O I
10.1016/j.cose.2020.101742
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Moving Target Defense (MTD) consists of applying system reconfiguration (e.g., VM migration, IP shuffling) to dynamically change the available attack surface. MTD makes use of reconfiguration to confuse attackers and nullify their knowledge about the system state. It also can be used as an attack reaction (e.g., using Virtual Machine (VM) migration to move VMs away from a compromised host). Thus, MTD seems to be a promising technique to tackle some of the cloud computing security challenges. In this systematic mapping study, we aim to investigate the current research state of Moving Target Defense in the cloud computing context, and to identify potential research gaps in the literature. Considering five major scientific databases in the computer science domain, we collected 224 papers related to the area. After disambiguation and filtering, we selected 95 papers for analysis. The outcome of such analysis offers a comprehensive overview of the current research. We can highlight some relevant research opportunities. First, only a few works present advances in the theoretical field of Moving Target Defense in cloud computing. Second, the proposal and evaluation of multi-layer Moving Target Defense mechanisms is still an open problem. Thirdly, there is a need for frameworks to support MTD evaluation, which may include a benchmark for comparing alternative MTD strategies. Finally, the study of potential impacts of Moving Target Defense in context-oriented clouds is a barely explored topic. (C) 2020 Elsevier Ltd. All rights reserved.
引用
下载
收藏
页数:11
相关论文
共 50 条
  • [21] Evaluating the Security and Economic Effects of Moving Target Defense Techniques on the Cloud
    Alavizadeh, Hooman
    Aref, Samin
    Kim, Dong Seong
    Jang-Jaccard, Julian
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTING, 2022, 10 (04) : 1772 - 1788
  • [22] MTD CBITS: Moving Target Defense for Cloud-Based IT Systems
    Bardas, Alexandru G.
    Sundaramurthy, Sathya Chandran
    Ou, Xinming
    DeLoach, Scott A.
    COMPUTER SECURITY - ESORICS 2017, PT I, 2018, 10492 : 167 - 186
  • [23] Understanding cloud-native applications after 10 years of cloud computing - A systematic mapping study
    Kratzke, Nane
    Quint, Peter-Christian
    JOURNAL OF SYSTEMS AND SOFTWARE, 2017, 126 : 1 - 16
  • [24] Cost-Effective Defense Timing Selection for Moving Target Defense in Satellite Computing Systems
    Zhang, Lin
    Guo, Yunchuan
    Leng, Siyuan
    Cao, Xiaogang
    Li, Fenghua
    Fang, Liang
    COMPUTATIONAL SCIENCE, ICCS 2024, PT I, 2024, 14832 : 224 - 239
  • [25] Study of Dynamic Defense Technique to Overcome Drawbacks of Moving Target Defense
    Bhopi, Sachin Kailas
    Dongre, Nilima M.
    2015 IEEE INTERNATIONAL CONFERENCE ON INFORMATION PROCESSING (ICIP), 2015, : 637 - 641
  • [26] Cloud Broker: A Systematic Mapping Study
    Faculty of Engineering, Ferdowsi University of Mashhad, Department of Computer Engineering, Mashhad
    9177948944, Iran
    IEEE Trans. Serv. Comput., 2024, 5 (2989-3005):
  • [27] Edge Computing: A Systematic Mapping Study
    Xue, Huihui
    Dai, Fei
    Liu, Guozhi
    Cao, Pengfei
    Huang, Bi
    2021 IEEE INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, INTL CONF ON CLOUD AND BIG DATA COMPUTING, INTL CONF ON CYBER SCIENCE AND TECHNOLOGY CONGRESS DASC/PICOM/CBDCOM/CYBERSCITECH 2021, 2021, : 507 - 514
  • [28] Edge computing: A systematic mapping study
    Sakhdari, Jalal
    Zolfaghari, Behrooz
    Izadpanah, Shaghayegh
    Mahdizadeh Zargar, Samaneh
    Rahati Quchani, Mahla
    Shadi, Mahsa
    Abrishami, Saeid
    Rasoolzadegan, Abbas
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2023, 35 (22):
  • [29] Systematic mapping study on granular computing
    Salehi, Saber
    Selamat, Ali
    Fujita, Hamido
    KNOWLEDGE-BASED SYSTEMS, 2015, 80 : 78 - 97
  • [30] Mapping a moving target
    Kay, MW
    Rogers, JM
    JOURNAL OF CARDIOVASCULAR ELECTROPHYSIOLOGY, 2003, 14 (10) : 1085 - 1086