Towards a Theory of Moving Target Defense 论文

2014引用 240
Information and Cyber SecurityNetwork Security and Intrusion DetectionAdvanced Malware Detection Techniques

详细信息

发表日期
2014-11-03
发表年份
2014

关键词

Information and Cyber SecurityNetwork Security and Intrusion DetectionAdvanced Malware Detection Techniques

摘要

The static nature of cyber systems gives attackers the advantage of time. Fortunately, a new approach, called the Moving Target Defense (MTD) has emerged as a potential solution to this problem. While promising, there is currently little research to show that MTD systems can work effectively in real systems. In fact, there is no standard definition of what an MTD is, what is meant by attack surface, or metrics to define the effectiveness of such systems. In this paper, we propose an initial theory that will begin to answer some of those questions. The paper defines the key concepts required to formally talk about MTD systems and their basic properties. It also discusses three essential problems of MTD systems, which include the MTD Problem (or how to select the next system configuration), the Adaptation Selection Problem, and the Timing Problem. We then formalize the MTD Entropy Hypothesis, which states that the greater the entropy of the system's configuration, the more effective the MTD system.