Surviving Advanced Persistent Threats - a Framework and Analysis

被引:0
|
作者
Mehresh, Ruchika [1 ]
Upadhyaya, Shambhu [2 ,3 ]
机构
[1] SUNY Buffalo, Buffalo, NY 14260 USA
[2] SUNY Buffalo, Comp Sci & Engn, Buffalo, NY 14260 USA
[3] SUNY Buffalo, CEISARE, Buffalo, NY 14260 USA
关键词
intrusion detection; mission-critical systems; simulation; tamper-resistant monitoring;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Designing robust mission-critical systems demands bringing together fault tolerance and security. The emergence of advanced persistent threats (APT) has further added to the challenge of meeting mission assurance goals. Despite the advances in mission survivability, the existing solutions remain ineffective against APTs. In this paper, we propose a novel survivability framework against APTs in a distributed environment. It involves tamper-resistant and surreptitious detection and node-to-node verification of suspicious events. The solution aims to identify attacker intent, objectives and strategies (AIOS) and to design targeted recoveries that promote survivability. Its security strength has been theoretically analyzed, while the performance and scalability aspects are measured via simulation. Our simulations demonstrate high scalability with respect to network size and application runtime and the time overhead for long running applications can be easily kept under 1% of original runtime by carefully adjusting the security strength.
引用
收藏
页码:445 / 454
页数:10
相关论文
共 50 条
  • [21] Advanced Persistent Threats: Behind the Scenes
    Ussath, Martin
    Jaeger, David
    Cheng, Feng
    Meinel, Christoph
    2016 ANNUAL CONFERENCE ON INFORMATION SCIENCE AND SYSTEMS (CISS), 2016,
  • [22] Advanced Persistent Threats in Autonomous Driving
    Kant K.
    Performance Evaluation Review, 2020, 47 (04): : 25 - 28
  • [23] Detection of previously unknown Advanced Persistent Threats through Visual Analytics with the MASFAD framework
    Nikolov, Georgi
    Mees, Wim
    2023 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS, ICMCIS, 2023,
  • [24] An Exploration on Advanced Persistent Threats in Biocybersecurity and Cyberbiosecurity
    Palmer, Xavier-Lewis
    Potter, Lucas
    Karahan, Saltuk
    PROCEEDINGS OF THE 17TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2022), 2022, : 532 - 535
  • [25] Combating Advanced Persistent Threats: Challenges and Solutions
    Wang, Yuntao
    Liu, Han
    Li, Zhendong
    Su, Zhou
    Li, Jiliang
    IEEE NETWORK, 2024, 38 (06): : 324 - 333
  • [26] Hidden Markov models for advanced persistent threats
    Brogi G.
    Di Bernardino E.
    International Journal of Security and Networks, 2019, 14 (04) : 181 - 190
  • [27] Mitigating Exploits, Rootkits and Advanced Persistent Threats
    Durham, David
    2014 IEEE HOT CHIPS 26 SYMPOSIUM (HCS), 2014,
  • [28] Dimensions of 'Socio' Vulnerabilities of Advanced Persistent Threats
    Nicho, Mathew
    McDermott, Christopher D.
    2019 27TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), 2019, : 521 - 525
  • [29] A novel approach for detecting advanced persistent threats
    Al-Saraireh, Jaafer
    Masarweh, Ala'
    EGYPTIAN INFORMATICS JOURNAL, 2022, 23 (04) : 45 - 55
  • [30] Targeted Cyberattacks: A Superset of Advanced Persistent Threats
    Sood, Aditya K.
    Enbody, Richard J.
    IEEE SECURITY & PRIVACY, 2013, 11 (01) : 54 - 61