Intelligent response system to mitigate the success likelihood of ongoing attacks - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2010

Intelligent response system to mitigate the success likelihood of ongoing attacks

Résumé

Intrusion response models and systems have been recently an active field in the security research. These systems rely on a fine diagnosis to perform and optimize their response. In particular, previous papers focus on balancing the cost of the response with the impact of the attack. In this paper, we present a novel attack response system, based on the assessment of the likelihood of success of attack objectives. First, the ongoing potential attacks are identified, and their success likelihood are calculated dynamically. The success likelihood depends mainly on the progress of the attack and the state of the monitored system. Second, candidate countermeasures are identified, and their effectiveness in reducing the pre-calculated success likelihood are assessed. Finally, the candidate countermeasures are prioritized.
Fichier principal
Vignette du fichier
bare_conf.pdf (381.86 Ko) Télécharger le fichier
Origine : Fichiers éditeurs autorisés sur une archive ouverte
Loading...

Dates et versions

hal-00540838 , version 1 (29-11-2010)

Identifiants

  • HAL Id : hal-00540838 , version 1

Citer

Wael Kanoun, Nora Cuppens-Boulahia, Frédéric Cuppens, Samuel Dubus, Antony Martin. Intelligent response system to mitigate the success likelihood of ongoing attacks. IAS 2010 : 6th IEEE International Conference on Information Assurance and Security, Aug 2010, Atlanta, United States. ⟨hal-00540838⟩
219 Consultations
268 Téléchargements

Partager

Gmail Facebook X LinkedIn More