A Closer Look at Attack Clustering

نویسندگان

  • Rainer Böhme
  • Gaurav Kataria
چکیده

Worms cause correlated failure of many systems in a short span of time. Therefore, automated defensive approaches have been proposed to counter growth of worms. However, in addition to worms, many other kinds of cyber-attacks also exhibit significant correlation, albeit with slightly different properties. We argue that those specific correlation properties manifest because of the interaction between the attacker and the defender strategies. We survey the design space of defensive approaches and observe the extent of clustering (correlation) in attacks that these approaches are likely to induce. We highlight the implications of attack clustering on individual firms deploying these various approaches and also on global actors like government and cyber-insurance providers. We use 19 months of honeynet attack data to estimate clustering for some non-worm type attacks.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

I'm No Longer a Child: A Closer Look at the Interaction Between Iranian EFL University Students' Identities and Their Academic Performance

Although university EFL students represent a wide array of social and cultural identities, their multiple and diverse identities are not usually considered in foreign language classrooms. This qualitative case study attempted to examine identity conflicts experienced by Iranian EFL learners at the university context. To this end, two Shiraz University students' identities were investigated. Sem...

متن کامل

Clustering-based Network Intrusion Detection

Recently data mining methods have gained importance in addressing network security issues, including network intrusion detection—a challenging task in network security. Intrusion detection systems aim to identify attacks with a high detection rate and a low false alarm rate. Classification-based data mining models for intrusion detection are often ineffective in dealing with dynamic changes in ...

متن کامل

A closer look at rock physics models and their assisted interpretation in seismic exploration

Subsurface rocks and their fluid content along with their architecture affect reflected seismic waves through variations in their travel time, reflection amplitude, and phase within the field of exploration seismology. The combined effects of these factors make subsurface interpretation by using reflection waves very difficult. Therefore, assistance from other subsurface disciplines is needed i...

متن کامل

How Judo Professionals Win and Lost in Competition: A Closer Look at Gender, Weight, Technique, and Gripping

Background. Judo coaches and athletes must understand the relevant technical content of the competition to improve their judo skills in Taiwan. Therefore, this study intends to explore the current situation and differences in scoring techniques of outstanding judo players and the impact on the victories or defeats of scoring techniques. Objectives. The purpose of this study is to explore the d...

متن کامل

A Closer Look to the Most Frequent Travelers’ Disease: A Systematic Update on Travelers’ Diarrhea

The present study, wants to highlight and review the most prevalent disease amongst travelers. In the current review, an updated review regarding epidemiology, involved pathogens, and a brief review of current evidence-based guidelines for prevention and treatment of this disease are provided. A distinguishing feature of the current review is the discussion of the impacts of irritable bowel syn...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2006