On Autonomous Agents in a Cyber Defence Environment

09/14/2023
by   Mitchell Kiely, et al.
0

Autonomous Cyber Defence is required to respond to high-tempo cyber-attacks. To facilitate the research in this challenging area, we explore the utility of the autonomous cyber operation environments presented as part of the Cyber Autonomy Gym for Experimentation (CAGE) Challenges, with a specific focus on CAGE Challenge 2. CAGE Challenge 2 required a defensive Blue agent to defend a network from an attacking Red agent. We provide a detailed description of the this challenge and describe the approaches taken by challenge participants. From the submitted agents, we identify four classes of algorithms, namely, Single- Agent Deep Reinforcement Learning (DRL), Hierarchical DRL, Ensembles, and Non-DRL approaches. Of these classes, we found that the hierarchical DRL approach was the most capable of learning an effective cyber defensive strategy. Our analysis of the agent policies identified that different algorithms within the same class produced diverse strategies and that the strategy used by the defensive Blue agent varied depending on the strategy used by the offensive Red agent. We conclude that DRL algorithms are a suitable candidate for autonomous cyber defence applications.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/05/2023

Towards Autonomous Cyber Operation Agents: Exploring the Red Case

Recently, reinforcement and deep reinforcement learning (RL/DRL) have be...
research
06/13/2019

Deep Reinforcement Learning for Cyber Security

The scale of Internet-connected systems has increased considerably, and ...
research
09/14/2021

Deep hierarchical reinforcement agents for automated penetration testing

Penetration testing the organised attack of a computer system in order t...
research
07/25/2022

Developing Optimal Causal Cyber-Defence Agents via Cyber Security Simulation

In this paper we explore cyber security defence, through the unification...
research
04/03/2023

A Multiagent CyberBattleSim for RL Cyber Operation Agents

Hardening cyber physical assets is both crucial and labor-intensive. Rec...
research
02/03/2023

Deep Reinforcement Learning for Cyber System Defense under Dynamic Adversarial Uncertainties

Development of autonomous cyber system defense strategies and action rec...
research
05/27/2020

The Adversarial Resilience Learning Architecture for AI-based Modelling, Exploration, and Operation of Complex Cyber-Physical Systems

Modern algorithms in the domain of Deep Reinforcement Learning (DRL) dem...

Please sign up or login with your details

Forgot password? Click here to reset