@article{ART002517071},
author={Tae-Keun Park and Kyungmin Park and Daesung Moon},
title={Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense},
journal={Journal of The Korea Society of Computer and Information},
issn={1598-849X},
year={2019},
volume={24},
number={10},
pages={25-32},
doi={10.9708/jksci.2019.24.10.025}
TY - JOUR
AU - Tae-Keun Park
AU - Kyungmin Park
AU - Daesung Moon
TI - Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense
JO - Journal of The Korea Society of Computer and Information
PY - 2019
VL - 24
IS - 10
PB - The Korean Society Of Computer And Information
SP - 25
EP - 32
SN - 1598-849X
AB - In this paper, we propose a method to apply the attack surface expansion through decoy traps to a protected server network. The network consists of a large number of decoys and protected servers. In the network, each protected server dynamically mutates its IP address and port numbers based on Hidden Tunnel Networking that is a network-based moving target defense scheme. The moving target defense is a new approach to cyber security and continuously changes system’s attack surface to prevent attacks. And, the attack surface expansion is an approach that uses decoys and decoy groups to protect attacks. The proposed method modifies the NAT table of the protected server with a custom chain and a RETURN target in order to make attackers waste all their time and effort in the decoy traps. We theoretically analyze the attacker success rate for the protected server network before and after applying the proposed method. The proposed method is expected to significantly reduce the probability that a protected server will be identified and compromised by attackers.
KW - Network-based moving target defense;attack surface;cyber security;decoy trap
DO - 10.9708/jksci.2019.24.10.025
ER -
Tae-Keun Park, Kyungmin Park and Daesung Moon. (2019). Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense. Journal of The Korea Society of Computer and Information, 24(10), 25-32.
Tae-Keun Park, Kyungmin Park and Daesung Moon. 2019, "Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense", Journal of The Korea Society of Computer and Information, vol.24, no.10 pp.25-32. Available from: doi:10.9708/jksci.2019.24.10.025
Tae-Keun Park, Kyungmin Park, Daesung Moon "Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense" Journal of The Korea Society of Computer and Information 24.10 pp.25-32 (2019) : 25.
Tae-Keun Park, Kyungmin Park, Daesung Moon. Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense. 2019; 24(10), 25-32. Available from: doi:10.9708/jksci.2019.24.10.025
Tae-Keun Park, Kyungmin Park and Daesung Moon. "Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense" Journal of The Korea Society of Computer and Information 24, no.10 (2019) : 25-32.doi: 10.9708/jksci.2019.24.10.025
Tae-Keun Park; Kyungmin Park; Daesung Moon. Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense. Journal of The Korea Society of Computer and Information, 24(10), 25-32. doi: 10.9708/jksci.2019.24.10.025
Tae-Keun Park; Kyungmin Park; Daesung Moon. Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense. Journal of The Korea Society of Computer and Information. 2019; 24(10) 25-32. doi: 10.9708/jksci.2019.24.10.025
Tae-Keun Park, Kyungmin Park, Daesung Moon. Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense. 2019; 24(10), 25-32. Available from: doi:10.9708/jksci.2019.24.10.025
Tae-Keun Park, Kyungmin Park and Daesung Moon. "Attack Surface Expansion through Decoy Trap for Protected Servers in Moving Target Defense" Journal of The Korea Society of Computer and Information 24, no.10 (2019) : 25-32.doi: 10.9708/jksci.2019.24.10.025