Invention Grant
- Patent Title: Scheduling of defensive security actions in information processing systems
- Patent Title (中): 在信息处理系统中安排防御性安全措施
-
Application No.: US13404839Application Date: 2012-02-24
-
Publication No.: US09471777B1Publication Date: 2016-10-18
- Inventor: Ari Juels , Marten Erik van Dijk , Alina M. Oprea , Ronald L. Rivest
- Applicant: Ari Juels , Marten Erik van Dijk , Alina M. Oprea , Ronald L. Rivest
- Applicant Address: US MA Hopkinton
- Assignee: EMC Corporation
- Current Assignee: EMC Corporation
- Current Assignee Address: US MA Hopkinton
- Agency: Ryan, Mason & Lewis, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/55

Abstract:
A processing device is configured to identify a plurality of defensive security actions to be taken to address a persistent security threat to a system comprising information technology infrastructure, and to determine a schedule for performance of the defensive security actions based at least in part on a selected distribution derived from a game-theoretic model, such as a delayed exponential distribution or other type of modified exponential distribution. The system subject to the persistent security threat is configured to perform the defensive security actions in accordance with the schedule in order to deter the persistent security threat. The distribution may be selected so as to optimize defender benefit in the context of the game-theoretic model, where the game-theoretic model may comprise a stealthy takeover game in which attacker and defender entities can take actions at any time but cannot determine current game state without taking an action.
Information query