Optimal Security Hardening Using Multi-objective Optimization on Attack Tree Models of Networks

被引:0
|
作者
Dewri, Rinku [1 ]
Poolsappasit, Nayot [1 ]
Ray, Indrajit [1 ]
Whitley, Darrell [1 ]
机构
[1] Colorado State Univ, Dept Comp Sci, Ft Collins, CO 80523 USA
来源
CCS'07: PROCEEDINGS OF THE 14TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY | 2007年
关键词
Security management; Attack trees; Multi-objective optimization;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Researchers have previously looked into the problem of determining if a given set of security hardening measures can effectively make a networked system secure. Many of them also addressed the problem of minimizing the total cost of implementing these hardening measures, given costs for individual measures. However, system administrators are often faced with a more challenging problem since they have to work within a fixed budget which may be less than the minimum cost of system hardening. Their problem is how to select a subset of security hardening measures so as to be within the budget and yet minimize the residual damage to the system caused by not plugging all required security holes. In this work, we develop a systematic approach to solve this problem by formulating it as multi-objective optimization problem on an attack tree model of the system and then use an evolutionary algorithm to solve it.
引用
收藏
页码:204 / 213
页数:10
相关论文
共 50 条
  • [41] Multi-Objective Optimization of TSK Fuzzy Models
    Guenounou, Ouahib
    Belmehdi, Ali
    Dahhou, Boutaieb
    2008 5TH INTERNATIONAL MULTI-CONFERENCE ON SYSTEMS, SIGNALS AND DEVICES, VOLS 1 AND 2, 2008, : 29 - +
  • [42] Multi-objective optimization of TSK fuzzy models
    Guenounou, O.
    Belmehdi, A.
    Dahhou, B.
    EXPERT SYSTEMS WITH APPLICATIONS, 2009, 36 (04) : 7416 - 7423
  • [43] Multi-objective optimization models in finance and investments
    Michalis Doumpos
    Constantin Zopounidis
    Journal of Global Optimization, 2020, 76 : 243 - 244
  • [44] Selection of initial designs for multi-objective optimization using classification and regression tree
    Lei Shi
    Yan Fu
    Ren-Jye Yang
    Bo-Ping Wang
    Ping Zhu
    Structural and Multidisciplinary Optimization, 2013, 48 : 1057 - 1073
  • [45] An ε-constraint multi-objective optimization model for web-based convergent product networks using the Steiner tree
    Hassanzadeh, R.
    Mahdavi, I.
    Mahdavi-Amiri, N.
    SCIENTIA IRANICA, 2015, 22 (03) : 1155 - 1170
  • [46] Selection of initial designs for multi-objective optimization using classification and regression tree
    Shi, Lei
    Fu, Yan
    Yang, Ren-Jye
    Wang, Bo-Ping
    Zhu, Ping
    STRUCTURAL AND MULTIDISCIPLINARY OPTIMIZATION, 2013, 48 (06) : 1057 - 1073
  • [47] Using Generative Adversarial Networks for Efficient Constrained Multi-objective Optimization
    Chao, Wang
    Jing, Zhang
    Zheng, Zhabang
    Liang, Zhushou
    PROCEEDINGS OF 2024 3RD INTERNATIONAL CONFERENCE ON FRONTIERS OF ARTIFICIAL INTELLIGENCE AND MACHINE LEARNING, FAIML 2024, 2024, : 135 - 138
  • [48] Design of forest energy supply networks using multi-objective optimization
    Kanzian, Christian
    Kuehmaier, Martin
    Zazgornik, Jan
    Stampfer, Karl
    BIOMASS & BIOENERGY, 2013, 58 : 294 - 302
  • [49] Multi-Objective Optimization of Temperature Distributions using Artificial Neural Networks
    Song, Zhihang
    Murray, Bruce T.
    Sammakia, Bahgat
    Lu, Shuxia
    2012 13TH IEEE INTERSOCIETY CONFERENCE ON THERMAL AND THERMOMECHANICAL PHENOMENA IN ELECTRONIC SYSTEMS (ITHERM), 2012, : 1209 - 1218
  • [50] Scheduling Optimization in Ophthalmology using Multi-Objective Integer Models.
    Betancourt-Odio, Manuel Alejandro
    Lazaro-Alquezar, Angelina
    Colino, Alberto
    2017 46TH INTERNATIONAL CONFERENCE ON PARALLEL PROCESSING WORKSHOPS (ICPPW), 2017, : 281 - 290