A stochastic network-interdiction model for cyber security
Siber ağların güvenliği için stokastik bir ağ-kesme modeli
- Tez No: 843416
- Danışmanlar: PROF. DR. VİCKİ M. BİER
- Tez Türü: Doktora
- Konular: Endüstri ve Endüstri Mühendisliği, Industrial and Industrial Engineering
- Anahtar Kelimeler: Bilgisayar ağları, Karışık tam sayılı doğrusal programlama, Siber güvenlik, Stokastik programlama, Çok amaçlı programlama, Computer networks, Mixed integer linear programming, Cyber security, Stochastic programming, Multiobjective programming
- Yıl: 2014
- Dil: İngilizce
- Üniversite: Unıversıty Of Wısconsın-Madıson
- Enstitü: Yurtdışı Enstitü
- Ana Bilim Dalı: Endüstri Mühendisliği Ana Bilim Dalı
- Bilim Dalı: Yöneylem Araştırması Bilim Dalı
- Sayfa Sayısı: Belirtilmemiş.
Özet
Bu tez calismasinda genel bilgisayar aglari savunma modeli gelistirilmistir. Modelimiz saldiri grafiklerini kullanarak olasi saldiri stratejilerini ve savunma opsiyonlarini hesaba katmaktadir. Modelimizde savunan tarafin temel hedefi kisitli butce altinda ag guvenligini maksimize etmektir. Literaturdeki benzeri bir cok model saldiran tarafin yalnizca bir kez saldiri gerceklestirdigini varsayarken bazi modeler ise birden fazla saldiri gerceklestirebilecegini varsaymaktadir. Ancak, literaturdeki hicbir modelde saldirinin basarili olamamasi durumda yeni saldiri stratejisi icin tam esneklik varsayimi yapilmamaktadir. Bunun yerine saldirinin basarisiz olmasi durumda yeni saldirinin bir onceki basarisiz olunan noktadan devam etmesi gerektigi varsayimi yapilmaktadir. Bu varsayim ise bilgisayar aglari guvenligi icin gecerli bir varsayim olamaz cunku bilgisayar saldirisi yapan korsanlar saldirilarini cok uzaklardan ve daha cok baska ulkelerden gerceklestirme imkanina sahiptir. Bilgisayar agi korsanlarinin bu durumunu hesaba katan bir model gelistirebilmek icin saldiri grafiklerini kullanarak grafik uzerindeki herbir asamayi saldirinin basari olasiligi seklinde tanimladik. Sonucta olusan problemi cok asamali rassal ag engelleme modeli olarak formule ettik. Modelimizde, savunma stratejisi belirlenirken saldirganin gelecek butun stratejileri hesaba katiliyor. Bu yonuyle oyun teorisininde bir uygulamasi olarak modellememizde oyun teorisi metodlari da kullanildi. Saldirgan ise oncelikle optimum saldirisini korunmus ag uzerinde gerceklestirmekte ve eger ilk saldirida basarisiz olursa ikinci saldiriyi ilk saldiriya gore guncellenmis saldirigi grafigi uzerinden tekrar yapmaktadir.
Özet (Çeviri)
We propose a general defender-attacker model for security of computer networks, using attack graphs to represent the possible attacker strategies and defender options. The defender's objective is to maximize the security of the network under a limited budget. In the literature, most network interdiction models allow the attacker only one attempt; other models allow multiple attempts, but assume that any subsequent attempt begins at the point where the previous attempt failed. By contrast, in computer security, the attacker could be operating from the safety of a foreign country, and the cost of changing attack strategies may be quite low, so a new model is needed. To capture the ability of the attacker to launch multiple attempts, we represent the attacker's success on each arc of the attack graph probabilistically, and formulate the resulting problem as a multiple-stage stochastic network-interdiction problem. In the resulting game, the defender anticipates both the attacker's strategy choices, and their probabilities of success, and chooses which arcs in the attack graph to protect in order to defend against multiple attempted attacks. The attacker then launches an optimal attack against the system, knowing which arcs have been protected. If the attacker fails at the first attempt, a second-stage optimal strategy is chosen, based on a revised attack graph showing which arcs have been successfully traversed (with success probabilities of 1), and which arc failed (assumed to have success probability 0). We solve the resulting problem using multi-stage stochastic optimization with recourse, and explore the attacker's strategies.
Benzer Tezler
- Leader-follower games for influence spread in social networks
Sosyal ağlarda etki yayılımına yönelik öncü-izleyici oyunları
KÜBRA TANINMIŞ ERSÜS
Doktora
İngilizce
2020
Endüstri ve Endüstri MühendisliğiBoğaziçi ÜniversitesiEndüstri Mühendisliği Ana Bilim Dalı
PROF. DR. MUSTAFA NECATİ ARAS
PROF. DR. İSMAİL KUBAN ALTINEL
- Sosyal ağlarda odağın ağ ve davranış dinamikleri üzerindeki etkisinin matematiksel bir model yardımıyla ölçülmesi
Proposal of a mathematical model for measuring the impact of focus on network and behaviour dynamics of social networks
KEZİBAN SEÇKİN CODAL
- Variant pathogenicity prediction tool based on protein-protein interactions and the effects of variants on 3-dimensional protein structure:a model for monogenic autoinflammatory disorders
Protein protein etkileşimlerini ve varyantların 3 boyutlu protein yapısındaki etkilerini esas alan varyant patojenite tahmini
ABDULLAH ALPER BÜLBÜL
Yüksek Lisans
İngilizce
2021
Biyoistatistikİstanbul Teknik ÜniversitesiMoleküler Biyoloji-Genetik ve Biyoteknoloji Ana Bilim Dalı (disiplinlerarası)
PROF. DR. EDA TAHİR TURANLI
- Optimization modeling for a steel structure project with multiple sourcing points and stochastic delivery times
Çelik konstrüksiyon projelerinde tedarik optimizasyonu: çoklu tedarik noktası ve stokastik sevkiyat süreleri
OSMAN SERKAN İLERİ
Doktora
İngilizce
2011
İnşaat MühendisliğiBoğaziçi Üniversitesiİnşaat Mühendisliği Ana Bilim Dalı
DOÇ. DR. NECATİ ARAS
PROF. DR. GÜLAY ALTAY
- Hand gesture recognition for Turkish sign language using electromyography for human-robot interaction
İnsan-robot etkileşimi için elektromyografi kullanarak Türk işaret dili için el hareketi tanıma
MUSTAFA SEDDIQI
Yüksek Lisans
İngilizce
2021
Bilgisayar Mühendisliği Bilimleri-Bilgisayar ve Kontrolİstanbul Teknik ÜniversitesiBilgisayar Mühendisliği Ana Bilim Dalı
DOÇ. DR. HATİCE KÖSE