Redundancy Planning for Cost Efficient Resilience to Cyber Attacks

被引:4
|
作者
Soikkeli, Jukka [1 ]
Casale, Giuliano [1 ]
Munoz-Gonzalez, Luis [1 ]
Lupu, Emil C. [1 ]
机构
[1] Imperial Coll London, Dept Comp, London SW7 2AZ, England
基金
英国工程与自然科学研究理事会;
关键词
Costs; Redundancy; Resource management; Cyberattack; Servers; Resilience; Production; Cyber security; redundancy; diversity; performance; cyber resilience; FRAMEWORK; NETWORKS;
D O I
10.1109/TDSC.2022.3151462
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
We investigate the extent to which redundancy (including with diversity) can help mitigate the impact of cyber attacks that aim to reduce system performance. Using analytical techniques, we estimate impacts, in terms of monetary costs, of penalties from breaching Service Level Agreements (SLAs), and find optimal resource allocations to minimize the overall costs arising from attacks. Our approach combines attack impact analysis, based on performance modeling using queueing networks, with an attack model based on attack graphs. We evaluate our approach using a case study of a website, and show how resource redundancy and diversity can improve the resilience of a system by reducing the likelihood of a fully disruptive attack. We find that the cost-effectiveness of redundancy depends on the SLA terms, the probability of attack detection, the time to recover, and the cost of maintenance. In our case study, redundancy with diversity achieved a saving of up to around 50 percent in expected attack costs relative to no redundancy. The overall benefit over time depends on how the saving during attacks compares to the added maintenance costs due to redundancy.
引用
收藏
页码:1154 / 1168
页数:15
相关论文
共 50 条
  • [1] Cyber Resilience: Why Protection against Cyber Attacks is not enough
    Kahrau, Felix
    ATP MAGAZINE, 2021, (11-12): : 32 - 34
  • [2] Resilience-oriented planning strategy for the cyber-physical ADN under malicious attacks
    Jing, Xiang
    Qin, Wenping
    Yao, Hongmin
    Han, Xiaoqing
    Wang, Peng
    APPLIED ENERGY, 2024, 353
  • [3] Resilience-Oriented Planning of Multi-Carrier Microgrids under Cyber-Attacks
    Azimian, Mahdi
    Amir, Vahid
    Javadi, Saeid
    Mohseni, Soheil
    Brent, Alan C.
    SUSTAINABLE CITIES AND SOCIETY, 2022, 79
  • [4] Cyber resilience of autonomous mobility systems: cyber-attacks and resilience-enhancing strategies
    Bo Zou
    Pooria Choobchian
    Julie Rozenberg
    Journal of Transportation Security, 2021, 14 : 137 - 155
  • [5] Cyber resilience of autonomous mobility systems: cyber-attacks and resilience-enhancing strategies
    Zou, Bo
    Choobchian, Pooria
    Rozenberg, Julie
    JOURNAL OF TRANSPORTATION SECURITY, 2021, 14 (3-4) : 137 - 155
  • [6] Planning cost-effective deceptive resource denial in defense to cyber-attacks
    Rowe, Neil
    ICIW 2007: PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY, 2007, : 177 - 184
  • [7] Resilience Evaluation of Cyber-Physical Power System Considering Cyber Attacks
    Kong, Xiangxing
    Lu, Zhigang
    Guo, Xiaoqiang
    Zhang, Jiangfeng
    Li, Huifeng
    IEEE TRANSACTIONS ON RELIABILITY, 2024, 73 (01) : 245 - 256
  • [8] Optimization of Cyber System Survivability Under Attacks Using Redundancy of Components
    Abu Al-Haija, Qasem
    Brahma, Swastik
    2019 53RD ANNUAL CONFERENCE ON INFORMATION SCIENCES AND SYSTEMS (CISS), 2019,
  • [9] Resilience Enhancing Mechanisms for Cyber-Manufacturing Systems against Cyber-Attacks
    Espinoza-Zelaya, Carlos
    Moon, Young Bai
    IFAC PAPERSONLINE, 2022, 55 (10): : 2252 - 2257
  • [10] Conceptualizing Human Resilience in the Face of the Global Epidemiology of Cyber Attacks
    Camp, L. Jean
    Grobler, Marthie
    Jang-Jaccard, Julian
    Probst, Christian
    Renaud, Karen
    Watters, Paul
    PROCEEDINGS OF THE 52ND ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES, 2019, : 4763 - 4772