kth.sePublications KTH
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Asymptotic Security using Bayesian Defense Mechanism with Application to Cyber Deception
Department of Systems and Control Engineering, Tokyo Institute of Technology, Tokyo, Japan.
KTH, School of Electrical Engineering and Computer Science (EECS), Intelligent systems, Decision and Control Systems (Automatic Control).ORCID iD: 0000-0003-1835-2963
2024 (English)In: IEEE Transactions on Automatic Control, ISSN 0018-9286, E-ISSN 1558-2523, Vol. 69, no 8, p. 5004-5019Article in journal (Refereed) Published
Abstract [en]

This paper addresses the question whether model knowledge can guide a defender to appropriate decisions, or not, when an attacker intrudes into control systems. The model-based defense scheme considered in this study, namely Bayesian defense mechanism, chooses reasonable reactions through observation of the system's behavior using models of the system's stochastic dynamics, the vulnerability to be exploited, and the attacker's objective. On the other hand, rational attackers take deceptive strategies for misleading the defender into making inappropriate decisions. In this paper, their dynamic decision making is formulated as a stochastic signaling game. It is shown that the belief of the true scenario has a limit in a stochastic sense at an equilibrium based on martingale analysis. This fact implies that there are only two possible cases: the defender asymptotically detects the attack with a firm belief, or the attacker takes actions such that the system's behavior becomes nominal after a finite number of time steps. Consequently, if different scenarios result in different stochastic behaviors, the Bayesian defense mechanism guarantees the system to be secure in an asymptotic manner provided that effective countermeasures are implemented. As an application of the finding, a defensive deception utilizing asymmetric recognition of vulnerabilities exploited by the attacker is analyzed. It is shown that the attacker possibly withdraws even if the defender is unaware of the exploited vulnerabilities, as long as the defender's unawareness is concealed by the defensive deception.

Place, publisher, year, edition, pages
Institute of Electrical and Electronics Engineers (IEEE) , 2024. Vol. 69, no 8, p. 5004-5019
Keywords [en]
Analytical models, Bayes methods, Bayesian methods, Behavioral sciences, Control systems, game theory, Games, intrusion detection, Numerical models, security, Security, stochastic systems
National Category
Control Engineering
Identifiers
URN: urn:nbn:se:kth:diva-350177DOI: 10.1109/TAC.2023.3340978ISI: 001293894600056Scopus ID: 2-s2.0-85179806383OAI: oai:DiVA.org:kth-350177DiVA, id: diva2:1883158
Note

QC 20240709

Available from: 2024-07-09 Created: 2024-07-09 Last updated: 2025-01-31Bibliographically approved

Open Access in DiVA

fulltext(1331 kB)37 downloads
File information
File name FULLTEXT01.pdfFile size 1331 kBChecksum SHA-512
ed5554d6e586e5019e8fd0a86acfa6b1f918cbcff159a94c0eb9a53bf2ab17bc77a6ee04e20d1309be044fd0f4788213bd7189ed4752a4933394ff5e46e68d90
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopus

Authority records

Sandberg, Henrik

Search in DiVA

By author/editor
Sandberg, Henrik
By organisation
Decision and Control Systems (Automatic Control)
In the same journal
IEEE Transactions on Automatic Control
Control Engineering

Search outside of DiVA

GoogleGoogle Scholar
Total: 37 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 157 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf