@inproceedings{dbfbe72f6d344ce9a6379072aaf7a4c6,
title = "Analysis and computation of adaptive defense strategies against advanced persistent threats for cyber-physical systems",
abstract = "Cyber-physical systems are facing new security challenges from Advanced Persistent Threats (APTs) due to the stealthy, dynamic and adaptive nature of the attack. The multi-stage Bayesian game captures the incomplete information of the players{\textquoteright} type, and enables an adaptive belief update according to the observable history of the other player{\textquoteright}s actions. The solution concept of perfect Bayesian Nash equilibrium (PBNE) under the proactive and reactive information structures of the players provides an important analytical tool to predict and design the players{\textquoteright} behavior. To capture the learning process and enable fast computation of PBNE, we use conjugate priors to update the beliefs of the players parametrically, which is assimilated into backward dynamic programming with an expanded state space. We use a mathematical programming approach to compute the PBNE of the dynamic bi-matrix game of incomplete information. In the case study, we analyze and study two PBNEs under complete and one-sided incomplete information. The results reveal the benefit of deception of the private attackers{\textquoteright} types and motivate defender{\textquoteright}s use of deception techniques to tilt the information asymmetry. Numerical results have been used to corroborate the analytical findings of our framework and show the effectiveness of defense design to deter the attackers and mitigate the APTs strategically.",
keywords = "Advanced Persistent Threats (APTs), Cyber deception, Multistage Bayesian game, Optimal learning, Proactive and strategic defense",
author = "Linan Huang and Quanyan Zhu",
note = "Publisher Copyright: {\textcopyright} 2018, Springer Nature Switzerland AG.; 9th International Conference on Decision and Game Theory for Security, GameSec 2018 ; Conference date: 29-10-2018 Through 31-10-2018",
year = "2018",
doi = "10.1007/978-3-030-01554-1_12",
language = "English (US)",
isbn = "9783030015534",
series = "Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)",
publisher = "Springer Verlag",
pages = "205--226",
editor = "Linda Bushnell and Radha Poovendran and Tamer Basar",
booktitle = "Decision and Game Theory for Security - 9th International Conference, GameSec 2018, Proceedings",
}