A Cloudified Dynamic Defense Framework for Cyber Deception as a Service
Yan Liu, Sujie Shao, Chao Yang, Shao-Yong Guo, Zhibin Zang, Yu Song
摘要
Current Cyber Deception as a Service (CDaaS) offerings force a trade-off between low-cost, low-fidelity services and expensive, high-fidelity on-premise deployments. To break this impasse, this study proposes DDCA (Dynamic Deception Cloudification Architecture), a novel cloudified defense framework. DDCA leverages a programmable data plane to construct a high-fidelity cloud deception environment with dynamic topology and controllable characteristics, enabling physically static deception resources to exhibit dynamic behaviors, thus confounding protected services and decoys at the network layer. We first built the DDCA attack-defense theoretical model capable of quantifying attacker's cognitive uncertainty relying on partially observable data. Furthermore, we designed a deception orchestration engine based on Deep Reinforcement Learning (DRL) that transforms defensive constraints into executable strategies of DDCA, jointly optimizing the attack surface hopping, topology reconfiguration, and obfuscated characteristic injection. Experiments conducted on a prototype platform demonstrated that the DDCA can significantly increase expected attack costs at an acceptable expense while effectively countering advanced reconnaissance, providing a more economical systematic solution for CDaaS.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
相关 Paper
- Automating Cloud Deployment for Deep Learning Inference of Real-time Online ServicesYang Li, Zhenhua Han, Quanlu Zhang, Zhenhua Li 等INFOCOM 2020 · 被引用 48 次
- SoK: The Pitfalls of Deep Reinforcement Learning for CybersecurityShae McFadden, Myles Foley, Elizabeth Bates, Ilias Tsingenopoulos 等USENIX Security 2026 · 被引用 7 次
- Storage Efficient and Dynamic Flexible Runtime Channel Pruning via Deep Reinforcement LearningJianda Chen, Shangyu Chen, Sinno Jialin PanNeurIPS 2020 · 被引用 31 次
- Demeter: Fine-grained Function Orchestration for Geo-distributed Serverless AnalyticsXiaofei Yue, Song Yang, Liehuang Zhu, Stojan Trajanovski 等INFOCOM 2024 · 被引用 13 次
- Finding Needles in a Moving Haystack: Prioritizing Alerts with Adversarial Reinforcement LearningLiang Tong, Aron Laszka, Chao Yan, Ning Zhang 等AAAI 2020 · 被引用 27 次
