通信学报 ›› 2020, Vol. 41 ›› Issue (8): 32-42.doi: 10.11959/j.issn.1000-436x.2020112

• 学术论文 • 上一篇    下一篇

基于多阶段网络欺骗博弈的主动防御研究

胡永进1,马骏1,郭渊博1,张晗1,2()   

  1. 1 信息工程大学密码工程学院,河南 郑州 450001
    2 郑州大学软件学院,河南 郑州 450001
  • 修回日期:2020-05-26 出版日期:2020-08-25 发布日期:2020-09-05
  • 作者简介:胡永进(1981– ),男,山东潍坊人,信息工程大学讲师、博士生,主要研究方向为主动防御和态势感知|马骏(1981– ),男,山西阳泉人,博士,信息工程大学副教授,主要研究方向为态势感知与威胁发现|郭渊博(1975– ),男,陕西周至人,博士,信息工程大学教授、博士生导师,主要研究方向为大数据安全和态势感知|张晗(1985– ),女,河南项城人,信息工程大学博士生,主要研究方向为自然语言处理和信息安全
  • 基金资助:
    信息保障技术重点实验室开放基金资助项目(KJ-15-108)

Research on active defense based on multi-stage cyber deception game

Yongjin HU1,Jun MA1,Yuanbo GUO1,Han ZHANG1,2()   

  1. 1 Department of Cryptogram Engineering,Information Engineering University,Zhengzhou 450001,China
    2 Software College,Zhengzhou University,Zhengzhou 450001,China
  • Revised:2020-05-26 Online:2020-08-25 Published:2020-09-05
  • Supported by:
    The Foundation of Science and Technology on Information Assurance Laboratory(KJ-15-108)

摘要:

针对网络攻击者需要依赖探测到的信息决定下一步动作这一特点,将非合作信号博弈理论应用于网络攻防分析。通过构建多阶段网络欺骗博弈模型,对网络攻防过程中存在的信号欺骗机制进行深入研究,充分考虑网络欺骗信号衰减作用,实现多阶段网络攻防对抗的动态分析推演。基于攻防分析改进了多阶段网络欺骗博弈均衡求解方法,并设计出最优网络欺骗防御策略选取算法。仿真实验验证了所提模型和方法的有效性,根据实验结果对多阶段网络欺骗博弈存在的规律进行了分析总结,能够为网络安全主动防御研究提供有效指导。

关键词: 网络攻防, 信号博弈, 网络欺骗, 主动防御, 策略选取

Abstract:

In view of the characteristic that attacker depended on the detected information to decide the next actions,the non-cooperative signal game theory was applied to analyze cyber attack and defense.The signal deception mechanism in the process of cyber attack and defense was considered deeply by constructing a multi-stage cyber deception game model,and the dynamic analysis and deduction of the multi-stage cyber attack and defense was realized by considering the attenuation of cyber deception signals.A solution for multi-stage cyber deception game equilibrium was improved based on analysis of cyber attack and defense,and an optimal algorithm for selecting cyber deception defense strategies was designed.The effectiveness of the model is verified by simulations.The rules of multi-stage cyber deception games are summarized based on the results,which can provide effective guidance for the research on cyber active defense.

Key words: cyber attack and defense, signal game, cyber deception, active defense, strategy selection

中图分类号: 

No Suggested Reading articles found!