Back to Search
Start Over
A spatio-temporal entropy-based approach for the analysis of cyber attacks (demo paper)
- Source :
- SIGSPATIAL/GIS
- Publication Year :
- 2018
- Publisher :
- ACM, 2018.
-
Abstract
- Computer networks are ubiquitous systems growing exponentially with a predicted 50 billion devices connected by 2050. This dramatically increases the potential attack surface of Internet networks. A key issue in cyber defense is to detect, categorize and identify these attacks, the way they are propagated and their potential impacts on the systems affected. The research presented in this paper models cyber attacks at large by considering the Internet as a complex system in which attacks are propagated over a network. We model an attack as a path from a source to a target, and where each attack is categorized according to its intention. We setup an experimental testbed with the concept of honeypot that evaluates the spatio-temporal distribution of these Internet attacks. The preliminary results show a series of patterns in space and time that illustrate the potential of the approach, and how cyber attacks can be categorized according to the concept and measure of entropy.
- Subjects :
- Honeypot
business.industry
Computer science
Testbed
Complex system
020206 networking & telecommunications
02 engineering and technology
Attack surface
Computer security
computer.software_genre
Ubiquitous systems
Cyber defense
0202 electrical engineering, electronic engineering, information engineering
020201 artificial intelligence & image processing
The Internet
business
computer
Subjects
Details
- Database :
- OpenAIRE
- Journal :
- Proceedings of the 26th ACM SIGSPATIAL International Conference on Advances in Geographic Information Systems
- Accession number :
- edsair.doi...........9e46422f2bd34236a3fb86645b7571b4
- Full Text :
- https://doi.org/10.1145/3274895.3274921