Selecting Countermeasures for ICT Systems Before They are Attacked

@article{Baiardi2015SelectingCF,
  title={Selecting Countermeasures for ICT Systems Before They are Attacked},
  author={Fabrizio Baiardi and Federico Tonelli and Alessandro Bertolini and Roberto Bertolotti},
  journal={JoWUA},
  year={2015},
  volume={6},
  pages={58-77}
}
A countermeasure is any change to a system to reduce the probability it is successfully attacked. We propose a model based approach that selects countermeasures through multiple simulations of the behaviors of an ICT system and of intelligent attackers that implement sequences of attacks. The simulations return information on the attacker sequences and the goals they reach we use to compute the statistics that drive the selection. Since attackers change their sequences as countermeasures are… CONTINUE READING

Citations

Publications citing this paper.

References

Publications referenced by this paper.
SHOWING 1-10 OF 50 REFERENCES

On the Effectiveness of Security Countermeasures for Critical Infrastructures.

  • Risk analysis : an official publication of the Society for Risk Analysis
  • 2016
VIEW 1 EXCERPT

Capec schema description

S. Barnum
  • http://capec.mitre.org, [Online; accessed May-2015].
  • 2015
VIEW 1 EXCERPT

Iterative Selection of Cost-Effective Countermeasures for Intelligent Threat Agents

  • 2015 23rd Euromicro International Conference on Parallel, Distributed, and Network-Based Processing
  • 2015
VIEW 1 EXCERPT

A Scenario Method to Automatically Assess ICT Risk

  • 2014 22nd Euromicro International Conference on Parallel, Distributed, and Network-Based Processing
  • 2014

Multi-objective optimization

K. Deb
  • Search Methodologies, E. K. Burke and G. Kendall, Eds. Springer US, July 2014, pp. 403–449.
  • 2014

Security Metrics Based on Attack Graphs for the Olympic Games Scenario

  • 2014 22nd Euromicro International Conference on Parallel, Distributed, and Network-Based Processing
  • 2014
VIEW 1 EXCERPT

Similar Papers