A system dynamics, epidemiological approach for high-level cyber-resilience to zero-day vulnerabilities

被引:4
|
作者
Sepulveda Estay, Daniel A. [1 ]
机构
[1] Tech Univ Denmark DTU, Dept Technol Management & Econ, Lyngby, Denmark
关键词
System dynamics; cyber-epidemiology; cyber-resilience;
D O I
10.1080/17477778.2021.1890533
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Cyber-attacks are serious threats to operations in most industries, enabled by a growing dependence on Information Technology (IT). To minimise disruptive effects on operations, organisations with complex system derive value both from preventing cyber-attacks and from responding promptly and coherently when cyber-attacks happen, capacity is known as cyber-resilience. Frameworks have been presented in literature to promote cyber-resilient response, yet little is known about the structures that result in a cyber-resilient behaviour. This paper explores an approach to modelling the structure of a system that is subject to an infection an eventual recovery from zero-day malware cyber-attacks, based on mechanisms derived from epidemiology. By analysing the relationship between the system vulnerabilities and the incidence of malware infections in a population of systems, this paper derives structural recommendations for resilience response, and policy requirements based on the claim that cyber-threats are a public-cyber-health issue instead of merely a competitive factor.
引用
收藏
页码:1 / 16
页数:16
相关论文
共 32 条
  • [1] An Efficient Approach to Assessing the Risk of Zero-Day Vulnerabilities
    Albanese, Massimiliano
    Jajodia, Sushil
    Singhal, Anoop
    Wang, Lingyu
    PROCEEDINGS OF THE 10TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY (SECRYPT 2013), 2013, : 207 - 218
  • [2] Cyber resilience recovery model to combat zero-day malware attacks
    Tran, Hiep
    Campos-Nanez, Enrique
    Fomin, Pavel
    Wasek, James
    COMPUTERS & SECURITY, 2016, 61 : 19 - 31
  • [3] An Efficient Hybrid Evolutionary Approach for Identification of Zero-Day Attacks on Wired/Wireless Network System
    Shukla, Alok Kumar
    WIRELESS PERSONAL COMMUNICATIONS, 2022, 123 (01) : 1 - 29
  • [4] An Efficient Hybrid Evolutionary Approach for Identification of Zero-Day Attacks on Wired/Wireless Network System
    Alok Kumar Shukla
    Wireless Personal Communications, 2022, 123 : 1 - 29
  • [5] A Reinforcement Learning-Based Approach for Detection Zero-Day Malware Attacks on IoT System
    Ngo, Quoc-Dung
    Nguyen, Quoc-Huu
    ARTIFICIAL INTELLIGENCE TRENDS IN SYSTEMS, VOL 2, 2022, 502 : 381 - 394
  • [6] Network Attack Surface: Lifting the Concept of Attack Surface to the Network Level for Evaluating Networks' Resilience Against Zero-Day Attacks
    Zhang, Mengyuan
    Wang, Lingyu
    Jajodia, Sushil
    Singhal, Anoop
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (01) : 310 - 324
  • [7] C-based High-level Synthesis system, "Cyber" - Design experience
    Wakabayashi, K
    NEC RESEARCH & DEVELOPMENT, 2000, 41 (03): : 264 - 268
  • [8] Assessment of Power System Flexibility: A High-Level Approach
    Lannoye, Eamonn
    Flynn, Damian
    O'Malley, Mark
    2012 IEEE POWER AND ENERGY SOCIETY GENERAL MEETING, 2012,
  • [9] High-level approach to modeling of observed system behavior
    Begin, Thomas
    Brandwajn, Alexandre
    Baynat, Bruno
    Wolfinger, Bernd E.
    Fdida, Serge
    PERFORMANCE EVALUATION, 2010, 67 (05) : 386 - 405
  • [10] Environmental IoT: Programming Cyber-physical Clouds with High-level System Specifications
    Rodrigues Filho, Roberto
    Porter, Barry
    Blair, Gordon
    2014 IEEE/ACM 7TH INTERNATIONAL CONFERENCE ON UTILITY AND CLOUD COMPUTING (UCC), 2014, : 947 - 950