摘要
Quantitative evaluations are of great importance in network security decision-making.In recent years,moving target defense(MTD)has appeared to be a promising defense approach that blocks asymmetrical advantage of attackers and favors the defender-notwithstanding,it has a limited deployment due to its uncertain efficiency and effectiveness in defense.In that case,quantitative metrics and evaluations of MTD are essential to prove its capability and impulse its further research.This article presents a comprehensive survey on state-of-the-art quantitative evaluations.First,taxonomy of MTD techniques is stated according to the software stack model.Then,a concrete review and comparison on existing quantitative evaluations of MTD is presented.Finally,notice-worthy open issues regarding this topic are proposed along with the conclusions of previous studies.
Quantitative evaluations are of great importance in network security decision-making. In recent years, moving target defense (MTD) has appeared to be a promising defense approach that blocks asymmetrical advantage of attackers and favors the defender-notwithstanding, it has a limited deployment due to its uncertain efficiency and effectiveness in defense. In that case, quantitative metrics and evaluations of MTD are essential to prove its capabil-ity and impulse its further research. This article presents a comprehensive survey on state-of-the-art quantitative evaluations. First, taxonomy of MTD techniques is stated according to the software stack model. Then, a concrete review and comparison on existing quantitative evaluations of MTD is presented. Finally, notice-worthy open issues regarding this topic are proposed along with the conclusions of previous studies.Huanruo LI, born in 1995, is pursuing amaster degree at national digital switchingsystem engineering technology researchcenter. Her research interests include cybersecurity and active defense.
出处
《网络与信息安全学报》
2018年第9期66-76,共11页
Chinese Journal of Network and Information Security
基金
The National Natural Science Foundation of China(No.61521003)
The National Key R&D Program of China(No.2016YFB0800100,No.2016YFB0800101)
The National Natural Science Foundation of China(No.61602509)
The Key Technologies Research and Development Program of Henan Province(172102210615)
关键词
计算机网络
网络管理
应用程序
信息安全
quantitative evaluation
moving target defense
security metrics