A Moving Target Defense Mechanism for MANETs Based on Identity Virtualization

被引:0
|
作者
Albanese, Massimiliano [1 ]
De Benedictis, Alessandra [2 ]
Jajodia, Sushil [1 ]
Sun, Kun [1 ]
机构
[1] George Mason Univ, Ctr Secure Informat Syst, Fairfax, VA 22030 USA
[2] Univ Naples Federico II, Dept Comp Sci, I-80125 Naples, Italy
关键词
SECURITY; POLICY;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Mechanisms for continuously changing or shifting a system's attack surface are emerging as game-changers in cyber security. In this paper, we propose a novel defense mechanism for protecting the identity of nodes in Mobile Ad Hoc Networks and defeat the attacker's reconnaissance efforts. The proposed mechanism turns a classical attack mechanism - Sybil - into an effective defense mechanism, with legitimate nodes periodically changing their virtual identity in order to increase the uncertainty for the attacker. To preserve communication among legitimate nodes, we modify the network layer by introducing (i) a translation service for mapping virtual identities to real identities; (ii) a protocol for propagating updates of a node's virtual identity to all legitimate nodes; and (iii) a mechanism for legitimate nodes to securely join the network. We show that the proposed approach is robust to different types of attacks, and also show that the overhead introduced by the update protocol can be controlled by tuning the update frequency.
引用
收藏
页码:278 / 286
页数:9
相关论文
共 50 条
  • [1] A moving target DDoS defense mechanism
    Wang, Huangxin
    Jia, Quan
    Fleck, Dan
    Powell, Walter
    Li, Fei
    Stavrou, Angelos
    COMPUTER COMMUNICATIONS, 2014, 46 : 10 - 21
  • [2] A Brief review on Network Identity-based Moving Target Defense
    Saputro, Nico
    2023 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN, 2023, : 610 - 615
  • [3] Security Function Virtualization based Moving Target Defense of SDN-enabled Smart Grid
    Lin, Gengshen
    Dong, Mianxiong
    Ota, Kaoru
    Li, Jianhua
    Yang, Wu
    Wu, Jun
    ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2019,
  • [4] Implementation of a Lossless Moving Target Defense Mechanism
    Zal, Mariusz
    Michalski, Marek
    Zwierzykowski, Piotr
    ELECTRONICS, 2024, 13 (05)
  • [5] A Cyber Risk Based Moving Target Defense Mechanism for Microservice Architectures
    Torkura, Kennedy A.
    Sukmana, Muhammad I. H.
    Kayem, Anne V. D. M.
    Cheng, Feng
    Meinel, Christoph
    2018 IEEE INT CONF ON PARALLEL & DISTRIBUTED PROCESSING WITH APPLICATIONS, UBIQUITOUS COMPUTING & COMMUNICATIONS, BIG DATA & CLOUD COMPUTING, SOCIAL COMPUTING & NETWORKING, SUSTAINABLE COMPUTING & COMMUNICATIONS, 2018, : 932 - 939
  • [6] SDN/NFV-Based Moving Target DDoS Defense Mechanism
    Liu, Chien-Chang
    Huang, Bo-Sheng
    Tseng, Chia-Wei
    Yang, Yao-Tsung
    Chou, Li-Der
    RECENT TRENDS IN DATA SCIENCE AND SOFT COMPUTING, IRICT 2018, 2019, 843 : 548 - 556
  • [7] Evolutionary Game-Based Defense Mechanism in the MANETs
    Bouhaddi, Myria
    Adi, Kamel
    Radjef, Mohammed Said
    SECURITY OF INFORMATION AND NETWORKS (SIN'16), 2016, : 88 - 95
  • [8] Game theoretic analysis for the mechanism of moving target defense
    Cai, Gui-lin
    Wang, Bao-sheng
    Xing, Qian-qian
    FRONTIERS OF INFORMATION TECHNOLOGY & ELECTRONIC ENGINEERING, 2017, 18 (12) : 2017 - 2034
  • [9] Game theoretic analysis for the mechanism of moving target defense
    Gui-lin Cai
    Bao-sheng Wang
    Qian-qian Xing
    Frontiers of Information Technology & Electronic Engineering, 2017, 18 : 2017 - 2034
  • [10] Research on moving target defense based on SDN
    Chen, Mingyong
    Wu, Weimin
    GREEN ENERGY AND SUSTAINABLE DEVELOPMENT I, 2017, 1864