A Formal Model for Attack Mutation Using Dynamic Description Logics
نویسندگان
چکیده
All currently available Network-based Intrusion Detection Systems (NIDS) rely upon passive protocol analysis which is fundamentally flawed as an attack can evade detection by exploiting ambiguities in the traffic stream as seen by the NIDS. We observe that different attack variations can be derived from the original attack using simple transformations. This paper proposes a semantic model for attack mutation based on dynamic description logics (DDL(X)), extensions of description logics (DLs) with a dynamic dimension, and explores the possibility of using DDL(X) as a basis for evasion composition. The attack mutation model describes all the possible transformations and how they can be applied to the original attack to generate a large number of attack variations. Furthermore, this paper presents a heuristics planning algorithm for the automation of evasion composition at the functional level based on DDL(X). Our approach employs classical DL-TBoxes to capture the constraints of the domain, DL-ABoxes to present the attack, and DLformulas to encode the objective sequence of packets respectively. In such a way, the evasion composition problem is solved by a decidable tableau procedure. The preliminary results certify the potential of the approach.
منابع مشابه
Using Description Logics for Man in the Middle Attack Analysis
The emerging size and complexity of computer networks and also various services provided by them makes the networks vulnerable to numerous attacks. Although in the last few years a more logical approach to TCP/IP network security problem has been followed, a complete and sound formal approach to this problem is lacking. In this paper, we propose using Description Logics as a formal model to ana...
متن کاملIntegrated Model Checking of Static Structure and Dynamic Behavior using Temporal Description Logics
This paper presents a new notation for the formal representation of the static structure and dynamic behavior of software, based on description logics and temporal logics. The static structure as described by UML class diagrams is represented formally by description logics while the dynamic behavior is represented by linear temporal logic and state transition systems. We integrate these descrip...
متن کاملDialogue Management in the EMBASSI Realm Using Description Logics to Reason about Ontology Concepts
The integration of utterances in their contexts, by the help of reasoning about the concepts of the domain – organized in a formal ontology and laid down in Description Logics –, enables successful dialogue management for spoken language. We outline our dialogue model and our approach of establishing a formal ontology within the
متن کاملDescription Logics and Feature
We present a formal model for the speciication of telephone features by means of description logics. Our framework permits the formal definition of the basic telephone system as well as the speciication of additional features. By using standard techniques from description logic reasoning, properties of features can be proved and interactions detected. An EXPTIME upper bound for the complexity o...
متن کاملAn Architecture Description Language Based on Dynamic Description Logics
ADML is an architectural description language based on Dynamic Description Logic for defining and simulating the behavior of system architecture. ADML is being developed as a new formal language and/or conceptual model for representing the architectures of concurrent and distributed systems, both hardware and software. ADML embraces dynamic change as a fundamental consideration, supports a broa...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2014