Model-based Performance Evaluation of a Moving Target Defense System

被引:0
|
作者
Chen, Zhi [1 ]
Chang, Xiaolin [1 ]
Misic, Jelena [2 ]
Misic, Vojislav B. [2 ]
Yang, Yang [1 ]
Han, Zhen [1 ]
机构
[1] Beijing Jiaotong Univ, Beijing Key Lab Secur & Privacy Intelligent Trans, Beijing, Peoples R China
[2] Ryerson Univ, Toronto, ON, Canada
基金
中国国家自然科学基金;
关键词
MTD; Markov process; performance assessment;
D O I
10.1109/GLOBECOM42002.2020.9322609
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Moving target defense (MTD). emerging as a game-changer in the cyber defense area, has got a lot of attention and development recently. As a proactive defense technique, MTD dynamically changes system attributes in order to create more uncertainties of the system and has been proved to be effective against cyber attacks. Beyond this, there is still a lack of researches with respect to the quantitative analysis of the effect of MTD on system performance. This paper aims to quantitatively investigate how MTD affects system performance while bringing security. We develop Markov process-based models for two different MTD strategies and derive the formulas for metrics of interest. We carry out simulation experiments to validate our proposed models with Mininet. Furthermore, numerical analysis is conducted for comparing these two different strategies in terms of system performance. The numerical results also show how different parameters affect the evaluation metrics. Our models can help defenders configure the MTD system in the most suitable way.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Effectiveness Evaluation Model of Moving Target Defense Based on System Attack Surface
    Xiong, Xin-Li
    Yang, Lin
    Zhao, Guang-Sheng
    IEEE ACCESS, 2019, 7 : 9998 - 10014
  • [2] Designing Secure and Resilient Cyber-Physical Systems: A Model-Based Moving Target Defense Approach
    Casola, Valentina
    De Benedictis, Alessandra
    Mazzocca, Carlo
    Montanari, Rebecca
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTING, 2024, 12 (02) : 631 - 642
  • [3] Performance and Security Evaluation of a Moving Target Defense Based on a Software-Defined Networking Environment
    Kim, Minjune
    Cho, Jin-Hee
    Lim, Hyuk
    Moore, Terrence J.
    Nelson, Frederica F.
    Kim, Dan Dongseong
    2022 IEEE 27TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC), 2022, : 119 - 129
  • [4] ChameleonSoft: A Moving Target Defense System
    Azab, Mohamed
    Hassan, Riham
    Eltoweissy, Mohamed
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON COLLABORATIVE COMPUTING: NETWORKING, APPLICATIONS AND WORKSHARING (COLLABORATECOM), 2011, : 241 - 250
  • [5] CHAOS: An SDN-Based Moving Target Defense System
    Shi, Yuan
    Zhang, Huanguo
    Wang, Juan
    Xiao, Feng
    Huang, Jianwei
    Zha, Daochen
    Hu, Hongxin
    Yan, Fei
    Zhao, Bo
    SECURITY AND COMMUNICATION NETWORKS, 2017,
  • [6] Intercepting a moving target: On-line or model-based control?
    Zhao, Huaiyong
    Warren, William H.
    JOURNAL OF VISION, 2017, 17 (05):
  • [7] A Defense Method Based on Moving Target Defense for New Power System APT Attack
    Li, Ruotong
    Li, Yuancheng
    International Journal of Network Security, 2023, 25 (04) : 587 - 594
  • [8] Performance characterization of a model-based SAR target recognition system using invariants
    Bhanu, B
    Jones, G
    ALGORITHMS FOR SYNTHETIC APERTURE RADAR IMAGERY IV, 1997, 3070 : 305 - 321
  • [9] Tools for the model-based performance evaluation
    Beilner, Heinz
    IT - Information Technology, 1995, 37 (03): : 5 - 9
  • [10] A Signaling Game Model for Moving Target Defense
    Feng, Xiaotao
    Zheng, Zizhan
    Cansever, Derya
    Swami, Ananthram
    Mohapatra, Prasant
    IEEE INFOCOM 2017 - IEEE CONFERENCE ON COMPUTER COMMUNICATIONS, 2017,