Protecting Critical Cloud Infrastructures with Predictive Capability

Sik-Sang Yau, Arun Balaji Buduru, Vinjith Nagaraja

Research output: Chapter in Book/Report/Conference proceedingConference contribution

9 Scopus citations

Abstract

Emerging trends in cyber system security breaches, including those in critical infrastructures involving cloud systems, such as in applications of military, homeland security, finance, utilities and transportation systems, have shown that attackers have abundant resources, including both human and computing power, to launch attacks. The sophistication and resources used in attacks reflect that the attackers may be supported by large organizations and in some cases by foreign governments. Hence, there is an urgent need to develop intelligent cyber defense approaches to better protecting critical cloud infrastructures. In order to have much better protection for critical cloud infrastructures, effective approaches with predictive capability are needed. Much research has been done by applying game theory to generating adversarial models for predictive defense of critical infrastructures. However, these approaches have serious limitations, some of which are due to the assumptions used in these approaches, such as rationality and Nash equilibrium, which may not be valid for current and emerging cloud infrastructures. Another major limitation of these approaches is that they do not capture probabilistic human behaviors accurately, and hence do not incorporate human behaviors. In order to greatly improve the protection of critical cloud infrastructures, it is necessary to predict potential security breaches on critical cloud infrastructures with accurate system-wide causal relationship and probabilistic human behaviors. In this paper, the challenges and our vision on developing such proactive protection approaches are discussed.

Original languageEnglish (US)
Title of host publicationProceedings - 2015 IEEE 8th International Conference on Cloud Computing, CLOUD 2015
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages1119-1124
Number of pages6
ISBN (Print)9781467372879
DOIs
Publication statusPublished - Aug 19 2015
Event8th IEEE International Conference on Cloud Computing, CLOUD 2015 - New York, United States
Duration: Jun 27 2015Jul 2 2015

Other

Other8th IEEE International Conference on Cloud Computing, CLOUD 2015
CountryUnited States
CityNew York
Period6/27/157/2/15

    Fingerprint

Keywords

  • Critical cloud infrastructures
  • Predictive defense
  • Pro-active protection
  • Probabilistic human behaviors
  • Probabilistic reasoning
  • Security breaches

ASJC Scopus subject areas

  • Computer Networks and Communications

Cite this

Yau, S-S., Buduru, A. B., & Nagaraja, V. (2015). Protecting Critical Cloud Infrastructures with Predictive Capability. In Proceedings - 2015 IEEE 8th International Conference on Cloud Computing, CLOUD 2015 (pp. 1119-1124). [7214175] Institute of Electrical and Electronics Engineers Inc.. https://doi.org/10.1109/CLOUD.2015.165