IDEAS home Printed from https://ideas.repec.org/a/sae/joudef/v15y2018i2p147-160.html
   My bibliography  Save this article

Cyber defense in breadth: Modeling and analysis of integrated defense systems

Author

Listed:
  • Jin-Hee Cho
  • Noam Ben-Asher

Abstract

Cybersecurity is one of most critical concerns for any organization, as frequency and severity of cyber attacks constantly increase, resulting in loss of vital assets and/or services. To preserve key security goals such as confidentiality, integrity, and availability, a variety of defense techniques have been introduced. While intrusion detection system (IDS) has played a key role in cybersecurity for a long time, recently new proactive defense techniques, called intrusion prevention techniques, have emerged, aiming to resolve the known IDS limitations. The intrusion prevention techniques have been introduced to control actions of attackers as a proactive defense that can be deployed independently or combined with other defense techniques that have the purpose of achieving “Defense in Breadth.†In this work, we develop a probability model using Stochastic Petri Nets that describes an integrated defense system with the defense techniques of both intrusion detection (i.e., IDS) and intrusion prevention (i.e., honeypots and platform migration) and analyze its performance compared to single defense or partially integrated defense approaches. Our result shows that the integrated defense system outperforms the compared approaches by minimizing attack success while maximizing system lifetime (i.e., mean time to security failure). Further, we investigate the effect of the interplay between different defense techniques in terms of the defense cost and attack cost.

Suggested Citation

  • Jin-Hee Cho & Noam Ben-Asher, 2018. "Cyber defense in breadth: Modeling and analysis of integrated defense systems," The Journal of Defense Modeling and Simulation, , vol. 15(2), pages 147-160, April.
  • Handle: RePEc:sae:joudef:v:15:y:2018:i:2:p:147-160
    DOI: 10.1177/1548512917699725
    as

    Download full text from publisher

    File URL: https://journals.sagepub.com/doi/10.1177/1548512917699725
    Download Restriction: no

    File URL: https://libkey.io/10.1177/1548512917699725?utm_source=ideas
    LibKey link: if access is restricted and if your library uses this service, LibKey will redirect you to where you can use your library subscription to access this item
    ---><---

    Citations

    Citations are extracted by the CitEc Project, subscribe to its RSS feed for this item.
    as


    Cited by:

    1. El Mehdi Kandoussi & Mohamed Hanini & Iman Mir & Abdelkrim Haqiq, 2020. "Toward an integrated dynamic defense system for strategic detecting attacks in cloud networks using stochastic game," Telecommunication Systems: Modelling, Analysis, Design and Management, Springer, vol. 73(3), pages 397-417, March.

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:sae:joudef:v:15:y:2018:i:2:p:147-160. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    We have no bibliographic references for this item. You can help adding them by using this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: SAGE Publications (email available below). General contact details of provider: .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.