Shock Trap: An active defense architecture based on trap vulnerabilities
Author
Abstract

Unlike traditional defense concepts, active defense is an asymmetric defense concept. It can not only identify potential threats in advance and nip them in the bud but also increase the attack cost of unknown threats by using change, interference, deception, or other means. Although active defense can reverse the asymmetric situation between attacks and defenses, current active defense technologies have two shortcomings: (i) they mainly aim at detecting attacks and increasing the cost of attacks without addressing the underlying problem; and (ii) they have problems such as high deployment costs and compromised system operational efficiency. This paper proposes an active defense architecture based on trap vulnerability with vulnerability as the core and introduces its design concept and specific implementation scheme. We deploy “traps” in the system to lure and find attackers while combining built-in detection, rejection, and traceback mechanisms to protect the system and trace the source of the attack.

Year of Publication
2022
Date Published
jul
Publisher
IEEE
ISBN Number
978-1-66547-480-1
URL
https://ieeexplore.ieee.org/document/9899774/
DOI
10.1109/DSC55868.2022.00011
Google Scholar | BibTeX | DOI