Hidden Markov Model and Cyber Deception for the Prevention of Adversarial Lateral Movement

نویسندگان

چکیده

Advanced persistent threats (APTs) have emerged as multi-stage attacks that targeted nation-states and their associated entities, including private corporate sectors. Cyber deception has a defense approach to secure our cyber infrastructure from APTs. Practical deployment of relies on defenders' ability place decoy nodes along the APT path optimally. This paper presents focused predicting most likely sequence attack paths deploying predicted path. Our proposed combines reactive (graph analysis) proactive (cyber technology) thwart adversaries' lateral movement. The is realized through two phases. first phase predicts based Intrusion Detection System (IDS) alerts network trace, second determining optimal We employ transition probabilities in Hidden Markov Model predict In phase, we utilize deploy nodes. However, it attacker will not follow move laterally. To address this challenge, Partially Observable Monte-Carlo Planning (POMCP) framework. POMCP helps defender assess several actions block when deviates evaluation results show can thwarts adversarial

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

the use of appropriate madm model for ranking the vendors of mci equipments using fuzzy approach

abstract nowadays, the science of decision making has been paid to more attention due to the complexity of the problems of suppliers selection. as known, one of the efficient tools in economic and human resources development is the extension of communication networks in developing countries. so, the proper selection of suppliers of tc equipments is of concern very much. in this study, a ...

15 صفحه اول

the innovation of a statistical model to estimate dependable rainfall (dr) and develop it for determination and classification of drought and wet years of iran

آب حاصل از بارش منبع تأمین نیازهای بی شمار جانداران به ویژه انسان است و هرگونه کاهش در کم و کیف آن مستقیماً حیات موجودات زنده را تحت تأثیر منفی قرار می دهد. نوسان سال به سال بارش از ویژگی های اساسی و بسیار مهم بارش های سالانه ایران محسوب می شود که آثار زیان بار آن در تمام عرصه های اقتصادی، اجتماعی و حتی سیاسی- امنیتی به نحوی منعکس می شود. چون میزان آب ناشی از بارش یکی از مولفه های اصلی برنامه ...

15 صفحه اول

Evaluation of the Hidden Markov Model for Detection of P300 in EEG Signals

Introduction: Evoked potentials arisen by stimulating the brain can be utilized as a communication tool  between humans and machines. Most brain-computer interface (BCI) systems use the P300 component,  which is an evoked potential. In this paper, we evaluate the use of the hidden Markov model (HMM) for  detection of P300.  Materials and Methods: The wavelet transforms, wavelet-enhanced indepen...

متن کامل

Hidden Markov Model for Inferring Learner Task Using Mouse Movement

One of the issues of e-learning web based application is to understand how the learner interacts with an e-learning application to perform a given task. This study proposes a methodology to analyze learner mouse movement in order to infer the task performed. To do this, a Hidden Markov Model is used for modeling the interaction of the learner with an elearning application. The obtained results ...

متن کامل

Taylor Expansion for the Entropy Rate of Hidden Markov Chains

We study the entropy rate of a hidden Markov process, defined by observing the output of a symmetric channel whose input is a first order Markov process. Although this definition is very simple, obtaining the exact amount of entropy rate in calculation is an open problem. We introduce some probability matrices based on Markov chain's and channel's parameters. Then, we try to obtain an estimate ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: IEEE Access

سال: 2021

ISSN: ['2169-3536']

DOI: https://doi.org/10.1109/access.2021.3069105