SPAR : an autonomous SDN intrusion response framework using combinatorial optimization over a probabilistic attack graph
Name
1192543688-MIT.pdf
Size
1.32 MB
Format
Adobe PDF
Checksum (MD5)
cf1e0829008ae3484d149a4937437ff0
Author(s)
Chia, Rayden Yongxiang.
Advisor(s)
Howard Shrobe.
Alternative Title
Secure-Perceive-Adapt-Respond
Autonomous SDN intrusion response framework using combinatorial optimization over a probabilistic attack graph
Date Issued
2020
Publisher
Massachusetts Institute of Technology
Abstract
In a typical network, there is a multitude of critical assets that may be compromised by a malicious attacker through successive attacks. In this paper, we present SPAR ("Secure-Perceive-Adapt-Respond"), a framework which leverages Attack Graphs (AGs) and the manageability and malleability of Software-Defined Networking (SDN) to effectively reason about the security posture of the network. In the event of an intrusion, countermeasures are then selected using a combinatorial optimization model and effected to evolve the network to a more secure state, which could be effected automatically or raised as a suggestion to a human decision-maker in a semi-autonomous mode.
Description
Thesis: M. Eng., Massachusetts Institute of Technology, Department of Electrical Engineering and Computer Science, May, 2020
Cataloged from the official PDF of thesis.
Includes bibliographical references (pages 103-106).
Subjects
Electrical Engineering and Computer Science.
MIT Department
Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science
Terms of Use
MIT theses may be protected by copyright. Please reuse MIT thesis content according to the MIT Libraries Permissions Policy, which is available through the URL provided.
Persistent DSpace Link