Matches in SemOpenAlex for { <https://semopenalex.org/work/W3037267797> ?p ?o ?g. }
Showing items 1 to 71 of
71
with 100 items per page.
- W3037267797 endingPage "243" @default.
- W3037267797 startingPage "235" @default.
- W3037267797 abstract "Penetration testing (pen-testing) aims to assess vulnerabilities in a computer network by emulating possible attacks. Autonomous pen-testing allows frequent and regular pen-testing to be performed, which is increasingly necessary as networks become larger and more complex. Autonomous pen-testing is a planning under uncertainty problem, where the uncertainty is caused by partial observability of the network, lack of reliability of attack tools, and possible changes in the network that are triggered by the network administrator (the defender). Approaches that account for the first two causes of uncertainty have been developed based on the mathematically principled framework, Partially Observable Markov Decision Process (POMDP). However, they do not account for the third type of uncertainty. On the other hand, work that accounts for the defender's actions do not account for both partial observability and unreliability of the attack tools. This paper proposes a POMDP-based autonomous pen-testing framework that accounts for the defender's behaviour, thereby accounting for all of the above three causes of uncertainty. Key to our model is the observation that the defender's actions can be abstracted into two types: Network analysis, which does not alter the network, and active defence operations, which alter the network. This observation enables us to represent the defender's behaviour as a single variable: An information decay factor. This variable is based on the expected time the defender takes to move from analysing to actively defending the network, and therefore represents the decay of a pen-tester's knowledge about the network. We propose D-PenTesting, which assumes the decay factor is known prior to execution, and LD-PenTesting, which learns the decay factor as it attempts to break into the network. Simulation tests on two benchmark scenarios indicate that D-PenTesting and LD-PenTesting outperform existing POMDP-based pen-tester and is more robust than one that incorporates a POMDP-based defender." @default.
- W3037267797 created "2020-07-02" @default.
- W3037267797 creator A5073857354 @default.
- W3037267797 creator A5084012018 @default.
- W3037267797 creator A5088753520 @default.
- W3037267797 date "2020-06-01" @default.
- W3037267797 modified "2023-10-11" @default.
- W3037267797 title "POMDP + Information-Decay: Incorporating Defender's Behaviour in Autonomous Penetration Testing" @default.
- W3037267797 doi "https://doi.org/10.1609/icaps.v30i1.6666" @default.
- W3037267797 hasPublicationYear "2020" @default.
- W3037267797 type Work @default.
- W3037267797 sameAs 3037267797 @default.
- W3037267797 citedByCount "8" @default.
- W3037267797 countsByYear W30372677972021 @default.
- W3037267797 countsByYear W30372677972022 @default.
- W3037267797 countsByYear W30372677972023 @default.
- W3037267797 crossrefType "journal-article" @default.
- W3037267797 hasAuthorship W3037267797A5073857354 @default.
- W3037267797 hasAuthorship W3037267797A5084012018 @default.
- W3037267797 hasAuthorship W3037267797A5088753520 @default.
- W3037267797 hasBestOaLocation W30372677971 @default.
- W3037267797 hasConcept C111919701 @default.
- W3037267797 hasConcept C119857082 @default.
- W3037267797 hasConcept C134306372 @default.
- W3037267797 hasConcept C154945302 @default.
- W3037267797 hasConcept C163836022 @default.
- W3037267797 hasConcept C17098449 @default.
- W3037267797 hasConcept C182365436 @default.
- W3037267797 hasConcept C26517878 @default.
- W3037267797 hasConcept C28826006 @default.
- W3037267797 hasConcept C33923547 @default.
- W3037267797 hasConcept C36299963 @default.
- W3037267797 hasConcept C38652104 @default.
- W3037267797 hasConcept C41008148 @default.
- W3037267797 hasConcept C98045186 @default.
- W3037267797 hasConcept C98763669 @default.
- W3037267797 hasConceptScore W3037267797C111919701 @default.
- W3037267797 hasConceptScore W3037267797C119857082 @default.
- W3037267797 hasConceptScore W3037267797C134306372 @default.
- W3037267797 hasConceptScore W3037267797C154945302 @default.
- W3037267797 hasConceptScore W3037267797C163836022 @default.
- W3037267797 hasConceptScore W3037267797C17098449 @default.
- W3037267797 hasConceptScore W3037267797C182365436 @default.
- W3037267797 hasConceptScore W3037267797C26517878 @default.
- W3037267797 hasConceptScore W3037267797C28826006 @default.
- W3037267797 hasConceptScore W3037267797C33923547 @default.
- W3037267797 hasConceptScore W3037267797C36299963 @default.
- W3037267797 hasConceptScore W3037267797C38652104 @default.
- W3037267797 hasConceptScore W3037267797C41008148 @default.
- W3037267797 hasConceptScore W3037267797C98045186 @default.
- W3037267797 hasConceptScore W3037267797C98763669 @default.
- W3037267797 hasLocation W30372677971 @default.
- W3037267797 hasOpenAccess W3037267797 @default.
- W3037267797 hasPrimaryLocation W30372677971 @default.
- W3037267797 hasRelatedWork W155097506 @default.
- W3037267797 hasRelatedWork W1578885565 @default.
- W3037267797 hasRelatedWork W2010780110 @default.
- W3037267797 hasRelatedWork W2101472607 @default.
- W3037267797 hasRelatedWork W2126610787 @default.
- W3037267797 hasRelatedWork W2405005285 @default.
- W3037267797 hasRelatedWork W2961085424 @default.
- W3037267797 hasRelatedWork W4306674287 @default.
- W3037267797 hasRelatedWork W4312791526 @default.
- W3037267797 hasRelatedWork W4224009465 @default.
- W3037267797 hasVolume "30" @default.
- W3037267797 isParatext "false" @default.
- W3037267797 isRetracted "false" @default.
- W3037267797 magId "3037267797" @default.
- W3037267797 workType "article" @default.