A Theory for Understanding and Quantifying Moving Target Defense

Download or Read eBook A Theory for Understanding and Quantifying Moving Target Defense PDF written by Rui Zhuang and published by . This book was released on 2015 with total page pages. Available in PDF, EPUB and Kindle.
A Theory for Understanding and Quantifying Moving Target Defense
Author :
Publisher :
Total Pages :
Release :
ISBN-10 : OCLC:934637461
ISBN-13 :
Rating : 4/5 (61 Downloads)

Book Synopsis A Theory for Understanding and Quantifying Moving Target Defense by : Rui Zhuang

Book excerpt: The static nature of cyber systems gives attackers a valuable and asymmetric advantage - time. To eliminate this asymmetric advantage, a new approach, called Moving Target Defense (MTD) has emerged as a potential solution. MTD system seeks to proactively change system configurations to invalidate the knowledge learned by the attacker and force them to spend more effort locating and re-locating vulnerabilities. While it sounds promising, the approach is so new that there is no standard definition of what an MTD is, what is meant by diversification and randomization, or what metrics to define the effectiveness of such systems. Moreover, the changing nature of MTD violates two basic assumptions about the conventional attack surface notion. One is that the attack surface remains unchanged during an attack and the second is that it is always reachable. Therefore, a new attack surface definition is needed. To address these issues, I propose that a theoretical framework for MTD be defined. The framework should clarify the most basic questions such as what an MTD system is and its properties such as adaptation, diversification and randomization. The framework should reveal what is meant by gaining and losing knowledge, and what are different attack types. To reason over the interactions between attacker and MTD system, the framework should define key concepts such as attack surface, adaptation surface and engagement surface. Based on that, this framework should allow MTD system designers to decide how to use existing configuration choices and functionality diversification to increase security. It should allow them to analyze the effectiveness of adapting various combinations of different configuration aspects to thwart different types of attacks. To support analysis, the frame- work should include an analytical model that can be used by designers to determine how different parameter settings will impact system security.


A Theory for Understanding and Quantifying Moving Target Defense Related Books

A Theory for Understanding and Quantifying Moving Target Defense
Language: en
Pages:
Authors: Rui Zhuang
Categories:
Type: BOOK - Published: 2015 - Publisher:

DOWNLOAD EBOOK

The static nature of cyber systems gives attackers a valuable and asymmetric advantage - time. To eliminate this asymmetric advantage, a new approach, called Mo
Moving Target Defense
Language: en
Pages: 196
Authors: Sushil Jajodia
Categories: Computers
Type: BOOK - Published: 2011-08-26 - Publisher: Springer Science & Business Media

DOWNLOAD EBOOK

Moving Target Defense: Creating Asymmetric Uncertainty for Cyber Threats was developed by a group of leading researchers. It describes the fundamental challenge
Moving Target Defense II
Language: en
Pages: 210
Authors: Sushil Jajodia
Categories: Computers
Type: BOOK - Published: 2012-09-18 - Publisher: Springer Science & Business Media

DOWNLOAD EBOOK

Our cyber defenses are static and are governed by lengthy processes, e.g., for testing and security patch deployment. Adversaries could plan their attacks caref
Information Systems Security
Language: en
Pages: 498
Authors: Atul Prakash
Categories: Computers
Type: BOOK - Published: 2014-12-03 - Publisher: Springer

DOWNLOAD EBOOK

This book constitutes the refereed proceedings of the 10th International Conference on Information Systems Security, ICISS 2014, held in Hyderabad, India, in De
Evaluating Moving Target Defense with PLADD.
Language: en
Pages: 64
Authors:
Categories:
Type: BOOK - Published: 2015 - Publisher:

DOWNLOAD EBOOK

This project evaluates the effectiveness of moving target defense (MTD) techniques using a new game we have designed, called PLADD, inspired by the game FlipIt