A Moving Target Defense Mechanism for MANETs Based on Identity Virtualization

被引:0
|
作者
Albanese, Massimiliano [1 ]
De Benedictis, Alessandra [2 ]
Jajodia, Sushil [1 ]
Sun, Kun [1 ]
机构
[1] George Mason Univ, Ctr Secure Informat Syst, Fairfax, VA 22030 USA
[2] Univ Naples Federico II, Dept Comp Sci, I-80125 Naples, Italy
关键词
SECURITY; POLICY;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Mechanisms for continuously changing or shifting a system's attack surface are emerging as game-changers in cyber security. In this paper, we propose a novel defense mechanism for protecting the identity of nodes in Mobile Ad Hoc Networks and defeat the attacker's reconnaissance efforts. The proposed mechanism turns a classical attack mechanism - Sybil - into an effective defense mechanism, with legitimate nodes periodically changing their virtual identity in order to increase the uncertainty for the attacker. To preserve communication among legitimate nodes, we modify the network layer by introducing (i) a translation service for mapping virtual identities to real identities; (ii) a protocol for propagating updates of a node's virtual identity to all legitimate nodes; and (iii) a mechanism for legitimate nodes to securely join the network. We show that the proposed approach is robust to different types of attacks, and also show that the overhead introduced by the update protocol can be controlled by tuning the update frequency.
引用
收藏
页码:278 / 286
页数:9
相关论文
共 50 条
  • [21] Reputation-based Service Migration for Moving Target Defense
    Zuo, Yanjun
    2016 IEEE INTERNATIONAL CONFERENCE ON ELECTRO INFORMATION TECHNOLOGY (EIT), 2016, : 239 - 245
  • [22] Moving target defense solution on network layer based on OpenFlow
    Hu Y.-X.
    Zheng K.-F.
    Yang Y.-X.
    Niu X.-X.
    Hu, Yi-Xun (hyx.bupt@gmail.com), 1600, Editorial Board of Journal on Communications (38): : 102 - 112
  • [23] RPAH: A Moving Target Network Defense Mechanism Naturally Resists Reconnaissances and Attacks
    Luo, Yue-Bin
    Wang, Bao-Sheng
    Wang, Xiao-Feng
    Zhang, Bo-Feng
    Hu, Wei
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2017, E100D (03): : 496 - 510
  • [24] A Defense Method Based on Moving Target Defense for New Power System APT Attack
    Li, Ruotong
    Li, Yuancheng
    International Journal of Network Security, 2023, 25 (04) : 587 - 594
  • [25] Moving-Target Defense Mechanisms Against Source-Selective Jamming Attacks in Tactical Cognitive Radio MANETs
    Marttinen, Aleksi
    Wyglinski, Alexander M.
    Jantti, Riku
    2014 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2014, : 14 - 20
  • [26] Moving Target Defense Router: MaTaDoR
    Ufuk, Berkan
    Sandikkaya, Mehmet Tahir
    SECRYPT : PROCEEDINGS OF THE 19TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2022, : 649 - 654
  • [28] A Framework for Moving Target Defense Quantification
    Connell, Warren
    Albanese, Massimiliano
    Venkatesan, Sridhar
    ICT SYSTEMS SECURITY AND PRIVACY PROTECTION, SEC 2017, 2017, 502 : 124 - 138
  • [29] Overview on Moving Target Network Defense
    Zhou, Xuan
    Lu, Yuliang
    Wang, Yongjie
    Yan, Xuehu
    2018 IEEE 3RD INTERNATIONAL CONFERENCE ON IMAGE, VISION AND COMPUTING (ICIVC), 2018, : 821 - 827
  • [30] Moving Target Defense for the CloudControl Game
    Hamasaki, Koji
    Hohjo, Hitoshi
    ADVANCES IN INFORMATION AND COMPUTER SECURITY, IWSEC 2021, 2021, 12835 : 241 - 251