Strategies Comparison for Game Theoretic Cyber Situational Awareness and Impact Assessment

Download Now Date Added: Feb 2010
Format: PDF

This paper compares different defense strategies against various attacks utilizing a dynamic game theoretic data fusion framework for cyber network defense. In the game theoretic framework, Alerts generated by Intrusion Detection Sensors (IDSs) or Intrusion Prevention Sensors (IPSs) are fed into the data refinement (Level 0) and object assessment (L1) data fusion components. High-level situation/threat assessment (L2/L3) data fusion based on Markov game model and Hierarchical Entity Aggregation (HEA) are proposed to refine the primitive prediction generated by adaptive feature/pattern recognition and capture new unknown features.