Stammdaten

Titel: On Multi-Phase and Multi-Stage Game-Theoretic Modeling of Advanced Persistent Threats
Untertitel:
Kurzfassung:

Advanced persistent threats (APT) are considered as a significant security threat today. Despite their diversity in nature and details, a common skeleton and sequence of phases can be identified that these attacks follow (in similar ways), which admits a game-theoretic description and analysis. This paper describes a general framework that divides a general APT into three major temporal phases, and fits an individual game model to each phase, connecting the games at the transition points between the phases (similarly to “milestones”accomplished during the launch of an APT). The theoretical description is derived from a running example. The benefit of this game-theoretic perspective is at least threefold, as it 1) helps to systematize the threat and respective mitigation actions (by turning them into pure strategies for the gameplay); 2) provides optimized actions for defense and attack, where the latter can be taken as a (nonunique) indication of neuralgic points; and 3) provides quantitative measures of resilience against an APT, in terms that can be defined freely by a security officer. We illustrate this approach with a numerical example.

Schlagworte:
Publikationstyp: Beitrag in Zeitschrift (Autorenschaft)
Erscheinungsdatum: 12.03.2018 (Online)
Erschienen in: IEEE Access
IEEE Access
zur Publikation
 ( IEEE; )
Titel der Serie: -
Bandnummer: 6
Heftnummer: 1
Erstveröffentlichung: Ja
Version: -
Seite: S. 13958 - 13971

Versionen

Keine Version vorhanden
Erscheinungsdatum: 12.03.2018
ISBN (e-book): -
eISSN: 2169-3536
DOI: http://dx.doi.org/10.1109/ACCESS.2018.2814481
Homepage: https://ieeexplore.ieee.org/document/8314099/
Open Access
  • Online verfügbar (Open Access)

Zuordnung

Organisation Adresse
Fakultät für Technische Wissenschaften
 
Institut für Artificial Intelligence und Cybersecurity
Universitätsstr. 65-67
A-9020 Klagenfurt
Österreich
  -993705
   aics-office@aau.at
https://www.aau.at/en/aics/
zur Organisation
Universitätsstr. 65-67
AT - A-9020  Klagenfurt

Kategorisierung

Sachgebiete
  • 102016 - IT-Sicherheit
Forschungscluster Kein Forschungscluster ausgewählt
Zitationsindex
  • Science Citation Index Expanded (SCI Expanded)
Informationen zum Zitationsindex: Master Journal List
Peer Reviewed
  • Ja
Publikationsfokus
  • Science to Science (Qualitätsindikator: I)
Klassifikationsraster der zugeordneten Organisationseinheiten:
Arbeitsgruppen
  • System Security

Kooperationen

Organisation Adresse
New York University
New York
Vereinigte St. v. Amerika
US  New York

Beiträge der Publikation

Keine verknüpften Publikationen vorhanden