|Title||Quantitative security analysis of a dynamic network system under lateral movement-based attacks|
|Publication Type||Journal Article|
|Year of Publication||2019|
|Authors||Y Shi, X Chang, RJ Rodríguez, Z Zhang, and KS Trivedi|
|Journal||Reliability Engineering & System Safety|
|Pagination||213 - 225|
© 2018 Elsevier Ltd Malicious lateral movement-based attacks have become a potential risk for many systems, bringing highly likely threats to critical infrastructures and national security. When launching this kind of attacks, adversaries first compromise a fraction of the targeted system and then move laterally to the rest of the system until the whole system is infected. Various approaches were proposed to study and/or defend against lateral movement-based attacks. However, few of them studied transient behaviors of dynamic attacking and dynamic targeted systems. This paper aims to analyze the transient security of a dynamic network system under lateral movement-based attacks from the time that attack-related abnormity in the system is detected until mechanisms are designed and deployed to defend against attacks. We explore state-space modeling techniques to construct a survivability model for quantitative analysis. A phased piecewise constant approximation approach is also proposed to derive the formulas for calculating model state transient probabilities, with which we derive formulas for calculating metrics of interest. The proposed approach allows both model state transition rates and the number of model states to be time-varying during the system recovery. Numerical analysis is carried out for investigating the impact of various dynamic system parameters on system security.
|Short Title||Reliability Engineering & System Safety|