Skip to main content
Journal cover image

Quantitative security analysis of a dynamic network system under lateral movement-based attacks

Publication ,  Journal Article
Shi, Y; Chang, X; Rodríguez, RJ; Zhang, Z; Trivedi, KS
Published in: Reliability Engineering and System Safety
March 1, 2019

Malicious lateral movement-based attacks have become a potential risk for many systems, bringing highly likely threats to critical infrastructures and national security. When launching this kind of attacks, adversaries first compromise a fraction of the targeted system and then move laterally to the rest of the system until the whole system is infected. Various approaches were proposed to study and/or defend against lateral movement-based attacks. However, few of them studied transient behaviors of dynamic attacking and dynamic targeted systems. This paper aims to analyze the transient security of a dynamic network system under lateral movement-based attacks from the time that attack-related abnormity in the system is detected until mechanisms are designed and deployed to defend against attacks. We explore state-space modeling techniques to construct a survivability model for quantitative analysis. A phased piecewise constant approximation approach is also proposed to derive the formulas for calculating model state transient probabilities, with which we derive formulas for calculating metrics of interest. The proposed approach allows both model state transition rates and the number of model states to be time-varying during the system recovery. Numerical analysis is carried out for investigating the impact of various dynamic system parameters on system security.

Duke Scholars

Altmetric Attention Stats
Dimensions Citation Stats

Published In

Reliability Engineering and System Safety

DOI

ISSN

0951-8320

Publication Date

March 1, 2019

Volume

183

Start / End Page

213 / 225

Related Subject Headings

  • Strategic, Defence & Security Studies
  • 49 Mathematical sciences
  • 40 Engineering
  • 35 Commerce, management, tourism and services
  • 15 Commerce, Management, Tourism and Services
  • 09 Engineering
  • 01 Mathematical Sciences
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Shi, Y., Chang, X., Rodríguez, R. J., Zhang, Z., & Trivedi, K. S. (2019). Quantitative security analysis of a dynamic network system under lateral movement-based attacks. Reliability Engineering and System Safety, 183, 213–225. https://doi.org/10.1016/j.ress.2018.11.022
Shi, Y., X. Chang, R. J. Rodríguez, Z. Zhang, and K. S. Trivedi. “Quantitative security analysis of a dynamic network system under lateral movement-based attacks.” Reliability Engineering and System Safety 183 (March 1, 2019): 213–25. https://doi.org/10.1016/j.ress.2018.11.022.
Shi Y, Chang X, Rodríguez RJ, Zhang Z, Trivedi KS. Quantitative security analysis of a dynamic network system under lateral movement-based attacks. Reliability Engineering and System Safety. 2019 Mar 1;183:213–25.
Shi, Y., et al. “Quantitative security analysis of a dynamic network system under lateral movement-based attacks.” Reliability Engineering and System Safety, vol. 183, Mar. 2019, pp. 213–25. Scopus, doi:10.1016/j.ress.2018.11.022.
Shi Y, Chang X, Rodríguez RJ, Zhang Z, Trivedi KS. Quantitative security analysis of a dynamic network system under lateral movement-based attacks. Reliability Engineering and System Safety. 2019 Mar 1;183:213–225.
Journal cover image

Published In

Reliability Engineering and System Safety

DOI

ISSN

0951-8320

Publication Date

March 1, 2019

Volume

183

Start / End Page

213 / 225

Related Subject Headings

  • Strategic, Defence & Security Studies
  • 49 Mathematical sciences
  • 40 Engineering
  • 35 Commerce, management, tourism and services
  • 15 Commerce, Management, Tourism and Services
  • 09 Engineering
  • 01 Mathematical Sciences