skip to main content
10.1145/3052973.3055161acmconferencesArticle/Chapter ViewAbstractPublication Pagesasia-ccsConference Proceedingsconference-collections
poster

Quantitative Security Assessment Method based on Entropy for Moving Target Defense

Authors Info & Claims
Published:02 April 2017Publication History

ABSTRACT

Moving Target Defense(MTD) provides a promising solution to reduce the chance of weakness exposure by constantly changing the target's attack surface. Though lots of MTD technologies have been researched to defend network attacks, there is little systematic study on security assessment of MTD. This paper proposes a novel method to quantify the security of MTD system which based on three factors: Vulnerability Entropy, Attack Entropy and Attenuation Entropy. This assessment model provides a theoretical and practical guidance for building MTD system and improving MTD technology.

References

  1. S. Jajodia et al., Moving-Target Defense: Creating Asymmetric Uncertainty for Cyber Threats, Springer(2011) Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. Shacham, Hovav, et al. On the effectiveness of address-space randomization. the 11th ACM conference on Computer and communications security.(2004). Google ScholarGoogle ScholarDigital LibraryDigital Library
  3. Gaurav S. Kc et al. Countering Code-Injection Attacks with Instruction-Set Randomization. In 10th ACM Conference on Computer and Communications Security (CCS)(2003) Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. A. Nguyen-Tuong et al., Security through Redundant Data Diversity. Proc. IEEE Int'l Conf. Dependable Systems and Networks with FTCS and DCC(2008).Google ScholarGoogle Scholar
  5. Xu, Jun, et al. Comparing Different Moving Target Defense Techniques. Proceedings of the First ACM Workshop on Moving Target Defense. ACM(2014). Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. Manadhata P K, Wing J M. A formal model for a system's attack surface{M}. Springer New York(2011)Google ScholarGoogle Scholar

Index Terms

  1. Quantitative Security Assessment Method based on Entropy for Moving Target Defense

    Recommendations

    Comments

    Login options

    Check if you have access through your login credentials or your institution to get full access on this article.

    Sign in
    • Published in

      cover image ACM Conferences
      ASIA CCS '17: Proceedings of the 2017 ACM on Asia Conference on Computer and Communications Security
      April 2017
      952 pages
      ISBN:9781450349444
      DOI:10.1145/3052973

      Copyright © 2017 Owner/Author

      Permission to make digital or hard copies of part or all of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for third-party components of this work must be honored. For all other uses, contact the Owner/Author.

      Publisher

      Association for Computing Machinery

      New York, NY, United States

      Publication History

      • Published: 2 April 2017

      Check for updates

      Qualifiers

      • poster

      Acceptance Rates

      ASIA CCS '17 Paper Acceptance Rate67of359submissions,19%Overall Acceptance Rate418of2,322submissions,18%

    PDF Format

    View or Download as a PDF file.

    PDF

    eReader

    View online with eReader.

    eReader