April 15, 2014
Journal Article

Defense on the Move: Ant-Based Cyber Defense

Abstract

Many common cyber defenses (like firewalls and IDS) are as static as trench warfare allowing the attacker freedom to probe them at will. The concept of Moving Target Defense (MTD) adds dynamism to the defender side, but puts the systems to be defended themselves in motion, potentially at great cost to the defender. An alternative approach is a mobile resilient defense that removes attackers’ ability to rely on prior experience without requiring motion in the protected infrastructure itself. The defensive technology absorbs most of the cost of motion, is resilient to attack, and is unpredictable to attackers. The Ant-Based Cyber Defense (ABCD) is a mobile resilient defense providing a set of roaming, bio-inspired, digital-ant agents working with stationary agents in a hierarchy headed by a human supervisor. The ABCD approach provides a resilient, extensible, and flexible defense that can scale to large, multi-enterprise infrastructures like the smart electric grid.

Revised: September 25, 2014 | Published: April 15, 2014

Citation

Fink G.A., J.N. Haack, A.D. McKinnon, and E.W. Fulp. 2014. Defense on the Move: Ant-Based Cyber Defense. IEEE Security & Privacy Magazine 12, no. 2:36-43. PNNL-SA-97342. doi:10.1109/MSP.2014.21