Cooperative red teaming of a prototype surivable service-oriented system

MILCOM(2012)

引用 0|浏览22
暂无评分
摘要
An increasing number of military systems are being developed using service orientation. Some of the features that make service orientation appealing, like loose coupling, dynamism and composition-oriented system construction, make securing service-based systems more complicated. We have been developing technologies for Advanced Protected Services (APS) to improve the resilience and survival of services under cyber attack. These technologies introduce a layer to absorb, contain, and adapt to cyber attacks before attacks reach critical services. This paper describes an evaluation of these advanced protection technologies using cooperative red teaming. In cooperative red teaming, an independent red team launches attacks on a protected enclave in order to evaluate the efficacy and efficiency of the protection technologies, but the red team is provided full knowledge of the system under test and its protections, and is given escalating levels of access to the system. The red team also operates within agreed upon rules of engagement designed to focus their effort on useful evaluation results. Apart from presenting the evaluation results, we also discuss cooperative red teaming as an effective means of evaluating cyber security.
更多
查看译文
关键词
military computing,military systems,security of data,service-oriented architecture,aps,advanced protected service,cooperative red teaming,cyber attack,cyber security,military system,protection technology,prototype surivable service-oriented system,service orientation,service-based system,adaptive security,red team evaluation,survivability,computer applications,computer security,service oriented architecture,resilience,prototypes,adaptive systems
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要