Journal on Communications ›› 2023, Vol. 44 ›› Issue (5): 52-63.doi: 10.11959/j.issn.1000-436x.2023091

• Papers • Previous Articles     Next Articles

Intelligent planning method for cyber defense strategies based on bounded rationality

Yingze LIU, Yuanbo GUO, Chen FANG, Yongfei LI, Qingli CHEN   

  1. Department of Cryptogram Engineering, Information Engineering University, Zhengzhou 450001, China
  • Revised:2023-03-26 Online:2023-05-25 Published:2023-05-01
  • Supported by:
    The National Natural Science Foundation of China(62276091);The Major Public Welfare Project of Henan Province(201300311200)

Abstract:

Considering that network defense subjects were usually resource-constrained, an intelligent planning and au-tonomous implementation of network defense strategies under bounded rationality was studied considering the concept of intelligent confrontation.First, attack graph, general knowledge and domain-specific knowledge were fused to construct a network defense security ontology.On that basis, knowledge reasoning was utilized to recommend security defense strategies to better adapt to the security needs of protected network information assets and current attack threats.Finally, an autonomous planning and implementation of defense strategies was achieved under the constraints of limited network security defense resources and dynamic changes of network information assets with the help of bounded rationality.The example shows that the proposed method is robust under dynamic attacks.The experiments show that the defense effec-tiveness is improved by 5.6%~26.12% compared with existing game theory and attack graph-based methods against a typical APT attack.

Key words: cyber defense, defense strategy recommendation, intelligent planning, bounded rationality, security ontology

CLC Number: 

No Suggested Reading articles found!