Show simple item record

AuthorHong J.B.
AuthorEnoch S.Y.
AuthorKim D.S.
AuthorNhlabatsi A.
AuthorFetais N.
AuthorKhan K.M.
Available date2020-02-24T08:57:12Z
Publication Date2018
Publication NameComputers and Security
ResourceScopus
ISSN1674048
URIhttp://dx.doi.org/10.1016/j.cose.2018.08.003
URIhttp://hdl.handle.net/10576/12978
AbstractMoving Target Defense (MTD) utilizes granularity, flexibility and elasticity properties of emerging networking technologies in order to continuously change the attack surface. There are many different MTD techniques proposed in the past decade to thwart cyberattacks. Due to the diverse range of different MTD techniques, it is of paramount importance to assess and compare their effectiveness. However, each technique causes distinct (dynamic) changes in the network, making an objective comparison difficult. In this paper, we incorporate MTD techniques into a temporal graph-based graphical security model, and develop a new set of dynamic security metrics to assess and compare their effectiveness. To this end, we first categorize and compare different attack and defense efforts. Second, we describe the temporal graph-based graphical security model to capture dynamic changes made by various MTD techniques in the network. We then develop a new set of security metrics for attack and defense efforts to evaluate the effectiveness of the MTD techniques. We implement two different MTD techniques, namely network topology shuffle and software diversity, and show their effectiveness against a targeted attack scenario in our experimental analysis. The results demonstrate that the proposed dynamic security metrics can capture different properties of MTD techniques, permitting a more fine-grained comparison and offering guidance for selecting the most effective MTD technique.
SponsorThis work was made possible by the support of a grant ( NPRP 8-531-1-111 ) from the Qatar National Research Fund (QNRF). The statements made herein are solely the responsibility of the authors.
Languageen
PublisherElsevier Ltd
SubjectEmerging networking technology
Moving target defense
Security analysis
Security metric
Security model
TitleDynamic security metrics for measuring the effectiveness of moving target defense techniques
TypeArticle
Pagination33 - 52
Volume Number79


Files in this item

FilesSizeFormatView

There are no files associated with this item.

This item appears in the following Collection(s)

Show simple item record