Defending against Contagious Attacks on a Network with Resource Reallocation

12/02/2020
by   Rufan Bai, et al.
0

In classic network security games, the defender distributes defending resources to the nodes of the network, and the attacker attacks a node, with the objective to maximize the damage caused. Existing models assume that the attack at node u causes damage only at u. However, in many real-world security scenarios, the attack at a node u spreads to the neighbors of u and can cause damage at multiple nodes, e.g., for the outbreak of a virus. In this paper, we consider the network defending problem against contagious attacks. Existing works that study shared resources assume that the resource allocated to a node can be shared or duplicated between neighboring nodes. However, in real world, sharing resource naturally leads to a decrease in defending power of the source node, especially when defending against contagious attacks. To this end, we study the model in which resources allocated to a node can only be transferred to its neighboring nodes, which we refer to as a reallocation process. We show that this more general model is difficult in two aspects: (1) even for a fixed allocation of resources, we show that computing the optimal reallocation is NP-hard; (2) for the case when reallocation is not allowed, we show that computing the optimal allocation (against contagious attack) is also NP-hard. For positive results, we give a mixed integer linear program formulation for the problem and a bi-criteria approximation algorithm. Our experimental results demonstrate that the allocation and reallocation strategies our algorithm computes perform well in terms of minimizing the damage due to contagious attacks.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/19/2019

Defending with Shared Resources on a Network

In this paper we consider a defending problem on a network. In the model...
research
04/26/2022

Mixed Strategies for Security Games with General Defending Requirements

The Stackelberg security game is played between a defender and an attack...
research
09/23/2018

Security Diffusion Games

An increasing attention has been recently paid to studying the confronta...
research
04/12/2023

Cost-damage analysis of attack trees

Attack trees (ATs) are a widely deployed modelling technique to categori...
research
10/12/2022

Exact and approximation algorithms for sensor placement against DDoS attacks

In a DDoS attack (Distributed Denial of Service), an attacker gains cont...
research
03/21/2022

Defending against Co-residence Attack in Energy-Efficient Cloud: An Optimization based Real-time Secure VM Allocation Strategy

Resource sharing among users serves as the foundation of cloud computing...
research
12/30/2018

Removing Malicious Nodes from Networks

A fundamental challenge in networked systems is detection and removal of...

Please sign up or login with your details

Forgot password? Click here to reset