Optimizing honeypot strategies against dynamic lateral movement using partially observable stochastic games

被引:22
|
作者
Horak, Karel [1 ]
Bosansky, Branislav [1 ]
Tomasek, Petr [1 ]
Kiekintveld, Christopher [2 ]
Kamhoua, Charles [3 ]
机构
[1] Czech Tech Univ, Fac Elect Engn, Dept Comp Sci, Tech 2, Prague 16627 6, Czech Republic
[2] Univ Texas El Paso, Dept Comp Sci, 500 W Univ Ave, El Paso, TX 79968 USA
[3] US Army Res Lab, 2800 Powder Mill Rd, Adelphi, MD 20783 USA
关键词
Dynamic honeypot allocation; Lateral movement; Partially observable stochastic games; Compact representation; Incremental strategy generation;
D O I
10.1016/j.cose.2019.101579
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Partially observable stochastic games (POSGs) are a general game-theoretic model for capturing dynamic interactions where players have partial information. The existing algorithms for solving subclasses of POSGs have theoretical guarantees for converging to approximate optimal strategies, however, their scat ability is limited and they cannot be directly used to solve games of realistic sizes. In our problem, the attacker uses lateral movement through the network in order to reach a specific host, while the defender wants to discover the attacker by dynamically reallocating honeypots. We demonstrate that restricting to a specific domain allows us to substantially improve existing algorithms: (1) we formulate a compact representation of uncertainty the defender faces, (2) we exploit the incremental strategy-generation method that over iterations expands the possible actions for players. The experimental evaluation shows that our novel algorithms scale several orders of magnitude better compared to the existing state of the art. (C) 2019 Elsevier Ltd. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] NEW APPROACH TO STOCHASTIC OPTIMIZING CONTROL OF STEADY-STATE SYSTEMS USING DYNAMIC INFORMATION
    LIN, J
    HAN, C
    ROBERTS, PD
    WAN, B
    [J]. INTERNATIONAL JOURNAL OF CONTROL, 1989, 50 (06) : 2205 - 2235
  • [42] A dynamic games approach to proactive defense strategies against Advanced Persistent Threats in cyber-physical systems
    Huang, Linan
    Zhu, Quanyan
    [J]. COMPUTERS & SECURITY, 2020, 89
  • [43] Dynamic Pricing and Inventory Strategies for Fashion Products Using Stochastic Fashion Level Function
    Lu, Wenhan
    Yan, Litan
    [J]. AXIOMS, 2024, 13 (07)
  • [44] OPTIMIZING WEED MANAGEMENT USING STOCHASTIC DYNAMIC-PROGRAMMING TO TAKE ACCOUNT OF UNCERTAIN HERBICIDE PERFORMANCE
    SELLS, JE
    [J]. AGRICULTURAL SYSTEMS, 1995, 48 (03) : 271 - 296
  • [45] Optimizing non-pharmaceutical intervention strategies against COVID-19 using artificial intelligence
    Janko, Vito
    Rescic, Nina
    Vodopija, Aljosa
    Susic, David
    De Masi, Carlo
    Tusar, Tea
    Gradisek, Anton
    Vandepitte, Sophie
    De Smedt, Delphine
    Javornik, Jana
    Gams, Matjaz
    Lustrek, Mitja
    [J]. FRONTIERS IN PUBLIC HEALTH, 2023, 11
  • [46] Optimizing operational policies of a Korean multireservoir system using sampling stochastic dynamic programming with ensemble streamflow prediction
    Kim, Young-Oh
    Eum, Hyung-II
    Lee, Eun-Goo
    Ko, Ick Hwan
    [J]. JOURNAL OF WATER RESOURCES PLANNING AND MANAGEMENT, 2007, 133 (01) : 4 - 14
  • [47] Efficiently Modeling Lateral Vehicle Movement Including its Temporal Interrelations Using a Two-Level Stochastic Model
    Neis, N.
    Beyerer, J.
    [J]. IEEE OPEN JOURNAL OF INTELLIGENT TRANSPORTATION SYSTEMS, 2024, 5 : 566 - 580
  • [48] Optimizing Vaccination Strategies against African Swine Fever Using Spatial Data from Wild Boars in Lithuania
    Gervasi, Vincenzo
    Masiulis, Marius
    Busauskas, Paulius
    Bellini, Silvia
    Guberti, Vittorio
    [J]. VIRUSES-BASEL, 2024, 16 (01):
  • [49] An evaluation of strategies for restoring a degraded New Zealand scallop fishery using stochastic dynamic simulation modelling
    Soliman, Tarek
    Robertson, Thomas
    McKenzie, Jeremy
    Williams, James
    Djanibekov, Utkur
    Inglis, Graeme J.
    [J]. JOURNAL OF ENVIRONMENTAL MANAGEMENT, 2021, 299
  • [50] Stable Dynamic Walking of the Quadruped "Kotetsu" Using Phase Modulations Based on Leg Loading/Unloading against Lateral Perturbations
    Maufroy, Christophe
    Kimura, Hiroshi
    Nishikawa, Tomohiro
    [J]. 2012 IEEE INTERNATIONAL CONFERENCE ON ROBOTICS AND AUTOMATION (ICRA), 2012, : 1883 - 1888