An Evolutionary Strategy for Resilient Cyber Defense

被引:4
|
作者
Fulp, Errin W. [1 ]
Gage, H. Donald [1 ]
John, David J. [1 ]
McNiece, Matthew R. [1 ]
Turkett, William H. [1 ]
Zhou, Xin [1 ]
机构
[1] Wake Forest Univ, Dept Comp Sci, Winston Salem, NC 27109 USA
关键词
D O I
10.1109/GLOCOM.2015.7417814
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Many cyber attacks can be attributed to poorly configured software, where administrators are often unaware of insecure settings due to the configuration complexity or the novelty of an attack. A resilient configuration management approach would address this problem by updating configuration settings based on current threats while continuing to render useful services. This responsive and adaptive behavior can be obtained using an evolutionary algorithm, where security measures of current configurations are employed to evolve new configurations. Periodically, these configurations are applied across a collection of computers, changing the systems' attack surfaces and reducing their exposure to vulnerabilities. The effectiveness of this evolutionary strategy for defending RedHat Linux Apache web-servers is analyzed experimentally through a study of configuration fitness, population diversity, and resiliency observations. Configuration fitness reflects the level of system confidentiality, integrity and availability; whereas, population diversity gauges the heterogeneous nature of the configuration sets. The computers' security depends upon the discovery of a diverse set of highly fit parameter configurations. Resilience reflects the evolutionary algorithm's adaptability to new security threats. Experimental results indicate the approach is able to determine and maintain secure parameter settings when confronted with a variety of simulated attacks over time.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Building Resilient Cyber Defense
    Kharwal, Rakesh
    PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON SECURITY OF INFORMATION AND NETWORKS, 2012, : 5 - 5
  • [2] Cyber Situational Awareness and Mission-Centric Resilient Cyber Defense
    Lei, Jingmin
    PROCEEDINGS OF 2015 4TH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT 2015), 2015, : 1218 - 1225
  • [3] Autonomous, Collaborative Control for Resilient Cyber Defense (ACCORD)
    Wagner, Stuart
    van den Berg, Eric
    Giacopelli, Jim
    Ghetie, Andrei
    Burns, Jim
    Tauil, Miriam
    Sen, Soumya
    Wang, Michael
    Chiang, Mung
    Lan, Tian
    Laddaga, Robert
    Robertson, Paul
    Manghwani, Prakash
    2012 IEEE SIXTH INTERNATIONAL CONFERENCE ON SELF-ADAPTIVE AND SELF-ORGANIZING SYSTEMS WORKSHOPS (SASOW), 2012, : 39 - 46
  • [4] Cyber Resilience: Rethinking Cybersecurity Strategy to Build a Cyber Resilient Architecture
    Conklin, William Arthur
    Shoemaker, Dan
    Kohnke, Anne
    PROCEEDINGS OF THE 12TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2017), 2017, : 105 - 111
  • [5] The Role of Situational Awareness in Cyber Security and Cyber Defense Strategy
    Onwubiko, Cyril
    2015 International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), 2015,
  • [6] Resilient Synchronization Strategy for AC Microgrids Under Cyber Attacks
    Sahoo, Subham
    Yang, Yongheng
    Blaabjerg, Frede
    IEEE TRANSACTIONS ON POWER ELECTRONICS, 2021, 36 (01) : 73 - 77
  • [7] Depression as an evolutionary strategy for defense against infection
    Anders, Sherry
    Tanaka, Midori
    Kinney, Dennis K.
    BRAIN BEHAVIOR AND IMMUNITY, 2013, 31 : 9 - 22
  • [8] A Fully Resilient Cyber-Secure Synchronization Strategy for AC Microgrids
    Sadabadi, Mahdieh S.
    Sahoo, Subham
    Blaabjerg, Frede
    IEEE TRANSACTIONS ON POWER ELECTRONICS, 2021, 36 (12) : 13372 - 13378
  • [9] A Cyber-Attack Resilient Distributed Control Strategy in Islanded Microgrids
    Zhou, Quan
    Shahidehpour, Mohammad
    Alabdulwahab, Ahmed
    Abusorrah, Abdullah
    IEEE TRANSACTIONS ON SMART GRID, 2020, 11 (05) : 3690 - 3701
  • [10] Cross-Layer Distributed Control Strategy for Cyber Resilient Microgrids
    Zhou, Quan
    Shahidehpour, Mohammad
    Alabdulwahab, Ahmed
    Abusorrah, Abdullah
    Che, Liang
    Liu, Xuan
    IEEE TRANSACTIONS ON SMART GRID, 2021, 12 (05) : 3705 - 3717