A Framework for SDN Forensic Readiness and Cybersecurity Incident Response

被引:2
|
作者
Jimenez, Maria B. [1 ]
Fernandez, David [1 ]
机构
[1] Univ Politecn Madrid, Dept Telemat Engn, Madrid, Spain
关键词
SDN Forensics; Evidence; Digital Forensic; SDN Incident Response; SDN Security; SDN Framework;
D O I
10.1109/NFV-SDN56302.2022.9974648
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
SDN represents a significant advance for the telecom world, since the decoupling of the control and data planes offers numerous advantages in terms of management dynamism and programmability, mainly due to its software-based centralized control. Unfortunately, these features can be exploited by malicious entities, who take advantage of the centralized control to extend the scope and consequences of their attacks. When this happens, both the legal and network technical fields are concerned with gathering information that will lead them to the root cause of the problem. Although forensics and incident response processes share their interest in the event information, both operate in isolation due to the conceptual and pragmatic challenges of integrating them into SDN environments, which impacts on the resources and time required for information analysis. Given these limitations, the current work focuses on proposing a framework for SDNs that combines the above approaches to optimize the resources to deliver evidence, incorporate incident response activation mechanisms, and generate assumptions about the possible origin of the security problem.
引用
收藏
页码:112 / 116
页数:5
相关论文
共 50 条
  • [21] Towards a Machine Learning Based Situational Awareness Framework for Cybersecurity: An SDN Implementation
    Nikoloudakis, Yannis
    Kefaloukos, Ioannis
    Klados, Stylianos
    Panagiotakis, Spyros
    Pallis, Evangelos
    Skianis, Charalabos
    Markakis, Evangelos K.
    SENSORS, 2021, 21 (14)
  • [22] Applying a Digital Forensic Readiness Framework: Three Case Studies
    Mouhtaropoulos, Antonis
    Dimotikalis, Panagiotis
    Li, Chang-Tsun
    2013 IEEE INTERNATIONAL CONFERENCE ON TECHNOLOGIES FOR HOMELAND SECURITY (HST), 2013, : 217 - 223
  • [23] Next-Generation Digital Forensic Readiness BYOD Framework
    Ali, Md Iman
    Kaur, Sukhkirandeep
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [24] Hunting in the enterprise: Forensic triage and incident response
    Moser, Andreas
    Cohen, Michael I.
    DIGITAL INVESTIGATION, 2013, 10 (02) : 89 - 98
  • [25] DIGITAL FORENSIC READINESS FRAMEWORK BASED ON HONEYPOT TECHNOLOGY FOR BYOD
    Asante, Audrey
    Amankona, Vincent
    JOURNAL OF DIGITAL FORENSICS SECURITY AND LAW, 2021, 16 (01)
  • [26] A Novel Forensic Readiness Framework Applicable to the Drone Forensics Field
    Alotaibi, Fahad Mazaed
    Al-Dhaqm, Arafat
    Al-Otaibi, Yasser D.
    COMPUTATIONAL INTELLIGENCE AND NEUROSCIENCE, 2022, 2022
  • [27] ETHICore: Ethical Compliance and Oversight Framework for Digital Forensic Readiness
    Adel, Amr
    Ahsan, Ali
    Davison, Claire
    INFORMATION, 2024, 15 (06)
  • [28] An Artificial Intelligence Framework for the Representation and Reuse of Cybersecurity Incident Resolution Knowledge
    Caron Guerra, Patrick Andrei
    Barcelos, Fabio Andre
    Nunes, Raul Ceretta
    de Freitas, Edison Pignaton
    de Lima Silva, Luis Alvaro
    PROCEEDINGS OF12TH LATIN-AMERICAN SYMPOSIUM ON DEPENDABLE AND SECURE COMPUTING, LADC 2023, 2023, : 136 - 145
  • [29] Success Factors for Designing a Cybersecurity Exercise on the Example of Incident Response
    Mases, Sten
    Maennel, Kaie
    Toussaint, Mascia
    Rosa, Veronica
    2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW 2021), 2021, : 259 - 268
  • [30] Structured Cybersecurity Information Exchange for Streamlining Incident Response Operations
    Takahashi, Takeshi
    Miyamoto, Daisuke
    NOMS 2016 - 2016 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, 2016, : 949 - 954