Surviving Advanced Persistent Threats - a Framework and Analysis

被引:0
|
作者
Mehresh, Ruchika [1 ]
Upadhyaya, Shambhu [2 ,3 ]
机构
[1] SUNY Buffalo, Buffalo, NY 14260 USA
[2] SUNY Buffalo, Comp Sci & Engn, Buffalo, NY 14260 USA
[3] SUNY Buffalo, CEISARE, Buffalo, NY 14260 USA
关键词
intrusion detection; mission-critical systems; simulation; tamper-resistant monitoring;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Designing robust mission-critical systems demands bringing together fault tolerance and security. The emergence of advanced persistent threats (APT) has further added to the challenge of meeting mission assurance goals. Despite the advances in mission survivability, the existing solutions remain ineffective against APTs. In this paper, we propose a novel survivability framework against APTs in a distributed environment. It involves tamper-resistant and surreptitious detection and node-to-node verification of suspicious events. The solution aims to identify attacker intent, objectives and strategies (AIOS) and to design targeted recoveries that promote survivability. Its security strength has been theoretically analyzed, while the performance and scalability aspects are measured via simulation. Our simulations demonstrate high scalability with respect to network size and application runtime and the time overhead for long running applications can be easily kept under 1% of original runtime by carefully adjusting the security strength.
引用
收藏
页码:445 / 454
页数:10
相关论文
共 50 条
  • [41] An adaptive defense mechanism to prevent advanced persistent threats
    Xie, Yi-xi
    Ji, Li-xin
    Li, Ling-shu
    Guo, Zehua
    Baker, Thar
    CONNECTION SCIENCE, 2021, 33 (02) : 359 - 379
  • [42] Beyond Blacklisting: Cyberdefense in the Era of Advanced Persistent Threats
    Beuhring, Aaron
    Salous, Kyle
    IEEE SECURITY & PRIVACY, 2014, 12 (05) : 90 - 93
  • [43] APTHunter: Detecting Advanced Persistent Threats in Early Stages
    Mahmoud, Moustafa
    Mannan, Mohammad
    Youssef, Amr
    DIGITAL THREATS: RESEARCH AND PRACTICE, 2023, 4 (01):
  • [44] The Influences of Feature Sets on the Detection of Advanced Persistent Threats
    Hofer-Schmitz, Katharina
    Kleb, Ulrike
    Stojanovic, Branka
    ELECTRONICS, 2021, 10 (06) : 1 - 22
  • [45] Systems for Detecting Advanced Persistent Threats a Development Roadmap using Intelligent Data Analysis
    de Vries, Johannes
    Hoogstraaten, Hans
    van den Berg, Jan
    Daskapan, Semir
    2012 ASE INTERNATIONAL CONFERENCE ON CYBER SECURITY (CYBERSECURITY), 2012, : 54 - 61
  • [46] Flow Based Analysis of Advanced Persistent Threats Detecting Targeted Attacks in Cloud Computing
    Vance, Andrew
    2014 FIRST INTERNATIONAL SCIENTIFIC-PRACTICAL CONFERENCE PROBLEMS OF INFOCOMMUNICATIONS SCIENCE AND TECHNOLOGY (PIC S&T), 2014, : 173 - 176
  • [47] Optimal Cyber-Defense Strategies for Advanced Persistent Threats: A Game Theoretical Analysis
    Acquaviva, Jeffrey
    Mahon, Mark
    Einfalt, Bruce
    LaPorta, Tom
    2017 IEEE 36TH INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS), 2017, : 204 - 213
  • [48] Exploration of Mobile Device Behavior for Mitigating Advanced Persistent Threats (APT): A Systematic Literature Review and Conceptual Framework
    Jabar, Thulfiqar
    Singh, Manmeet Mahinderjit
    SENSORS, 2022, 22 (13)
  • [49] Ctracer: Uncover C&C in Advanced Persistent Threats based on Scalable Framework for Enterprise Log Data
    Hong, Kai-Fong
    Chen, Chien-Chih
    Chiu, Yu-Ting
    Chou, Kuo-Sen
    2015 IEEE INTERNATIONAL CONGRESS ON BIG DATA - BIGDATA CONGRESS 2015, 2015, : 551 - 558
  • [50] Learning Games for Defending Advanced Persistent Threats in Cyber Systems
    Zhu, Tianqing
    Ye, Dayong
    Cheng, Zishuo
    Zhou, Wanlei
    Yu, Philip S.
    IEEE TRANSACTIONS ON SYSTEMS MAN CYBERNETICS-SYSTEMS, 2023, 53 (04): : 2410 - 2422