Visible to the public Automated Effectiveness Evaluation of Moving Target Defenses: Metrics for Missions and Attacks

TitleAutomated Effectiveness Evaluation of Moving Target Defenses: Metrics for Missions and Attacks
Publication TypeConference Paper
Year of Publication2016
AuthorsTaylor, Joshua, Zaffarano, Kara, Koller, Ben, Bancroft, Charlie, Syversen, Jason
Conference NameProceedings of the 2016 ACM Workshop on Moving Target Defense
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-4570-5
KeywordsBig Data, big data security, big data security metrics, cyber-security, experimentation, Metrics, Modeling, moving target defenses, pubcrawl, quantification, security metrics, virtualization
Abstract

In this paper, we describe the results of several experiments designed to test two dynamic network moving target defenses against a propagating data exfiltration attack. We designed a collection of metrics to assess the costs to mission activities and the benefits in the face of attacks and evaluated the impacts of the moving target defenses in both areas. Experiments leveraged Siege's Cyber-Quantification Framework to automatically provision the networks used in the experiment, install the two moving target defenses, collect data, and analyze the results. We identify areas in which the costs and benefits of the two moving target defenses differ, and note some of their unique performance characteristics.

URLhttp://doi.acm.org/10.1145/2995272.2995282
DOI10.1145/2995272.2995282
Citation Keytaylor_automated_2016