Investigating the Application of Moving Target Defenses to Network Security
Abstract
This paper presents a preliminary design for a moving-target defense \201MTD\202 for computer networks to combat an attacker?s asymmetric advantage. The MTD system reasons over a set of abstract models that capture the network?s configuration and its operational and security goals to select adaptations that maintain the operational integrity of the network. The paper examines both a simple \201purely random\202 MTD system as well as an intelligent MTD system that uses attack indicators to augment adaptation selection. A set of simulation-based experiments show that such an MTD system may in fact be able to reduce an attacker?s success likelihood. These results are a preliminary step towards understanding and quantifying the impact of MTDs on computer networks.
Document Details
- Document Type
- Technical Report
- Publication Date
- Aug 01, 2013
- Accession Number
- ADA583400
Entities
People
- Alex Bardas
- Anoop Singhal
- Rui Zhuang
- Scott A. Deloach
- Su Zhang
- Xinming Ou
Organizations
- Kansas State University