Premium Essay

Attack Countermeasure Trees (Act): Towards Unifying the Constructs of Attack and Defense Trees

In:

Submitted By sidhurox
Words 8828
Pages 36
SECURITY AND COMMUNICATION NETWORKS
Security Comm. Networks (2011)
Published online in Wiley Online Library (wileyonlinelibrary.com). DOI: 10.1002/sec.299

SPECIAL ISSUE PAPER

Attack Countermeasure Trees (ACT): towards unifying the constructs of attack and defense trees
Arpan Roy* , Dong Seong Kim and Kishor S. Trivedi
Department of Electrical & Computer Engineering, Duke University, Durham, NC 27708, U.S.A.

ABSTRACT
Attack tree (AT) is one of the widely used non-state-space models for security analysis. The basic formalism of AT does not take into account defense mechanisms. Defense trees (DTs) have been developed to investigate the effect of defense mechanisms using measures such as attack cost, security investment cost, return on attack (ROA), and return on investment
(ROI). DT, however, places defense mechanisms only at the leaf nodes and the corresponding ROI/ROA analysis does not incorporate the probabilities of attack. In attack response tree (ART), attack and response are both captured but ART suffers from the problem of state-space explosion, since solution of ART is obtained by means of a state-space model. In this paper, we present a novel attack tree paradigm called attack countermeasure tree (ACT) which avoids the generation and solution of a state-space model and takes into account attacks as well as countermeasures (in the form of detection and mitigation events). In ACT, detection and mitigation are allowed not just at the leaf node but also at the intermediate nodes while at the same time the state-space explosion problem is avoided in its analysis. We study the consequences of incorporating countermeasures in the ACT using three case studies (ACT for BGP attack, ACT for a SCADA attack and
ACT for malicious insider attacks). Copyright © 2011 John Wiley & Sons, Ltd.
KEYWORDS
attack trees; non-state-space model; mincuts;

Similar Documents

Premium Essay

Sql Quiz

...Emory University | Internetworking Technology Handbook | [Type the document subtitle] | | SAVIOUR EMMANUEL UDOBONG | [Pick the date] | [Type the abstract of the document here. The abstract is typically a short summary of the contents of the document. Type the abstract of the document here. The abstract is typically a short summary of the contents of the document.] | Internetworking Basics An internetwork is a collection of individual networks, connected by intermediate networking devices, that functions as a single large network. Internetworking refers to the industry, products, and procedures that meet the challenge of creating and administering internetworks. The following articles provide information about internetworking basics: * Internetworking Basics * Introduction to LAN Protocols * Introduction to WAN Technologies * Bridging and Switching Basics * Routing Basics * Network Management Basics * Open System Interconnection Protocols LAN Technologies A LAN is a high-speed data network that covers a relatively small geographic area. It typically connects workstations, personal computers, printers, servers, and other devices. LANs offer computer users many advantages, including shared access to devices and applications, file exchange between connected users, and communication between users via electronic mail and other applications. The following articles provide information different LAN technologies: * Ethernet...

Words: 217433 - Pages: 870

Free Essay

Global Financial Crisis and Protectionism

...Table of Contents Title Page Copyright Page Dedication PREFACE TO THE 10TH ANNIVERSARY EDITION Introduction Part I - THE PURPOSE OF LIFE Chapter 1 - THE RIGHT TO HAPPINESS Chapter 2 - THE SOURCES OF HAPPINESS Chapter 3 - TRAINING THE MIND FOR HAPPINESS Chapter 4 - RECLAIMING OUR INNATE STATE OF HAPPINESS Part II - HUMAN WARMTH AND COMPASSION Chapter 5 - A NEW MODEL FOR INTIMACY Chapter 6 - DEEPENING OUR CONNECTION TO OTHERS Chapter 7 - THE VALUE AND BENEFITS OF COMPASSION Part III - TRANSFORMING SUFFERING Chapter 8 - FACING SUFFERING Chapter 9 - SELF-CREATED SUFFERING Chapter 10 - SHIFTING PERSPECTIVE Chapter 11 - FINDING MEANING IN PAIN AND SUFFERING Part IV - OVERCOMING OBSTACLES Chapter 12 - BRINGING ABOUT CHANGE Chapter 13 - DEALING WITH ANGER AND HATRED Chapter 14 - DEALING WITH ANXIETY AND BUILDING SELF-ESTEEM Part V - CLOSING REFLECTIONS ON LIVING A SPIRITUAL LIFE Chapter 15 - BASIC SPIRITUAL VALUES Acknowledgements THE ART OF HAPPINESS BOOK SERIES ABOUT THE AUTHORS RIVERHEAD BOOKS Published by the Penguin Group Penguin Group (USA) Inc., 375 Hudson Street, New York, New York 10014, USA Penguin Group (Canada), 90 Eglinton Avenue East, Suite 700, Toronto, Ontario M4P 2Y3, Canada (a division of Pearson Canada Inc.) Penguin Books Ltd, 80 Strand, London WC2R 0RL, England Penguin Ireland, 25 St Stephen’s Green, Dublin 2, Ireland (a division of Penguin Books Ltd) Penguin Group (Australia), 250 Camberwell...

Words: 89236 - Pages: 357

Free Essay

Code

...C O D E C ODE v e r s i o n 2 . 0 L A W R E N C E L E S S I G A Member of the Perseus Books Group New York Copyright © 2006 by Lawrence Lessig CC Attribution-ShareAlike Published by Basic Books A Member of the Perseus Books Group Printed in the United States of America. For information, address Basic Books, 387 Park Avenue South, New York, NY 10016–8810. Books published by Basic Books are available at special discounts for bulk purchases in the United States by corporations, institutions, and other organizations. For more information, please contact the Special Markets Department at the Perseus Books Group, 11 Cambridge Center, Cambridge MA 02142, or call (617) 252-5298, (800) 255-1514 or e-mail special.markets@perseusbooks.com. CIP catalog record for this book is available from the Library of Congress. ISBN-10: 0–465–03914–6 ISBN-13: 978–0–465–03914–2 06 07 08 09 / 10 9 8 7 6 5 4 3 2 1 Code version 1.0 FOR CHARLIE NESSON, WHOSE EVERY IDEA SEEMS CRAZY FOR ABOUT A YEAR. Code version 2.0 TO WIKIPEDIA, THE ONE SURPRISE THAT TEACHES MORE THAN EVERYTHING HERE. C O N T E N T S Preface to the Second Edition Preface to the First Edition Chapter 1. Code Is Law Chapter 2. Four Puzzles from Cyberspace PART I: “REGULABILITY” ix xiii 1 9 Chapter 3. Is-Ism: Is the Way It Is the Way It Must Be? Chapter 4. Architectures of Control Chapter 5. Regulating Code PART II: REGULATION BY CODE 31 38 61 Chapter 6. Cyberspaces Chapter 7. What Things Regulate...

Words: 190498 - Pages: 762

Free Essay

The Public Needs to Know

...******Created by ebook converter - www.ebook-converter.com****** ******ebook converter DEMO - www.ebook-converter.com******* ******Created by ebook converter - www.ebook-converter.com****** KOINONIA HOUSE Coeur d’Alene, Idaho 83816-0347 ******ebook converter DEMO - www.ebook-converter.com******* ******Created by ebook converter - www.ebook-converter.com****** COSMIC CODES Copyright © 1999 by Koinonia House Revised 2004 P.O. Box D Coeur d’Alene, ID 83816-0347 Web Site: http://www.khouse.org Second Printing 2004 Third Printing 2011 ISBN 978-1-57821-072-5 Design and production by Koechel Peterson & Associates, Minneapolis, Minnesota. Scripture quotations in this book are taken from the King James Version of the Bible. All rights reserved. No portion of this book may reproduced in any form without the written permission of the Publisher. Printed in the United States of America. ******ebook converter DEMO - www.ebook-converter.com******* ******Created by ebook converter - www.ebook-converter.com****** “Cosmic Codes was the authoritative resource that we relied on in the research of our PAX-TV/Discovery Channel television special Secrets of the Bible Code Revealed. It’s absolutely packed with fascinating factual information on all of the Bible-related codes.” DAVID W. BALSIGER PRODUCER, SECRETS OF THE BIBLE CODE REVEALED “Chuck Missler writes from a technological and Biblical background in this cutting-edge analysis of the hidden codes...

Words: 141008 - Pages: 565

Premium Essay

Managing Information Technology (7th Edition)

...CONTENTS: CASE STUDIES CASE STUDY 1 Midsouth Chamber of Commerce (A): The Role of the Operating Manager in Information Systems CASE STUDY I-1 IMT Custom Machine Company, Inc.: Selection of an Information Technology Platform CASE STUDY I-2 VoIP2.biz, Inc.: Deciding on the Next Steps for a VoIP Supplier CASE STUDY I-3 The VoIP Adoption at Butler University CASE STUDY I-4 Supporting Mobile Health Clinics: The Children’s Health Fund of New York City CASE STUDY I-5 Data Governance at InsuraCorp CASE STUDY I-6 H.H. Gregg’s Appliances, Inc.: Deciding on a New Information Technology Platform CASE STUDY I-7 Midsouth Chamber of Commerce (B): Cleaning Up an Information Systems Debacle CASE STUDY II-1 Vendor-Managed Inventory at NIBCO CASE STUDY II-2 Real-Time Business Intelligence at Continental Airlines CASE STUDY II-3 Norfolk Southern Railway: The Business Intelligence Journey CASE STUDY II-4 Mining Data to Increase State Tax Revenues in California CASE STUDY II-5 The Cliptomania™ Web Store: An E-Tailing Start-up Survival Story CASE STUDY II-6 Rock Island Chocolate Company, Inc.: Building a Social Networking Strategy CASE STUDY III-1 Managing a Systems Development Project at Consumer and Industrial Products, Inc. CASE STUDY III-2 A Make-or-Buy Decision at Baxter Manufacturing Company CASE STUDY III-3 ERP Purchase Decision at Benton Manufacturing Company, Inc. CASE STUDY III-4 ...

Words: 239887 - Pages: 960