Shock Trap: An active defense architecture based on trap vulnerabilities | |
---|---|
Author | |
Abstract |
Unlike traditional defense concepts, active defense is an asymmetric defense concept. It can not only identify potential threats in advance and nip them in the bud but also increase the attack cost of unknown threats by using change, interference, deception, or other means. Although active defense can reverse the asymmetric situation between attacks and defenses, current active defense technologies have two shortcomings: (i) they mainly aim at detecting attacks and increasing the cost of attacks without addressing the underlying problem; and (ii) they have problems such as high deployment costs and compromised system operational efficiency. This paper proposes an active defense architecture based on trap vulnerability with vulnerability as the core and introduces its design concept and specific implementation scheme. We deploy “traps” in the system to lure and find attackers while combining built-in detection, rejection, and traceback mechanisms to protect the system and trace the source of the attack. |
Year of Publication |
2022
|
Date Published |
jul
|
Publisher |
IEEE
|
ISBN Number |
978-1-66547-480-1
|
URL |
https://ieeexplore.ieee.org/document/9899774/
|
DOI |
10.1109/DSC55868.2022.00011
|
Google Scholar | BibTeX | DOI |