MEGA-PT: A Meta-game Framework for Agile Penetration Testing

Yunfei Ge, Quanyan Zhu

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Penetration testing is an essential means of proactive defense in the face of escalating cybersecurity incidents. Traditional manual penetration testing methods are time-consuming, resource-intensive, and prone to human errors. Current trends in automated penetration testing are also impractical, facing significant challenges such as the curse of dimensionality, scalability issues, and lack of adaptability to network changes. To address these issues, we propose MEGA-PT, a meta-game penetration testing framework, featuring micro tactic games for node-level local interactions and a macro strategy process for network-wide attack chains. The micro- and macro-level modeling enables distributed, adaptive, collaborative, and fast penetration testing. MEGA-PT offers agile solutions for various security schemes, including optimal local penetration plans, purple teaming solutions, and risk assessment, providing fundamental principles to guide future automated penetration testing. Our experiments demonstrate the effectiveness and agility of our model by providing improved defense strategies and adaptability to changes at both local and network levels.

Original languageEnglish (US)
Title of host publicationDecision and Game Theory for Security - 15th International Conference, GameSec 2024, Proceedings
EditorsArunesh Sinha, Jie Fu, Quanyan Zhu, Tao Zhang
PublisherSpringer Science and Business Media Deutschland GmbH
Pages24-44
Number of pages21
ISBN (Print)9783031748349
DOIs
StatePublished - 2025
Event15th International Conference on Decision and Game Theory for Security, GameSec 2024 - New York, United States
Duration: Oct 16 2024Oct 18 2024

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume14908 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference15th International Conference on Decision and Game Theory for Security, GameSec 2024
Country/TerritoryUnited States
CityNew York
Period10/16/2410/18/24

Keywords

  • Agile Defense
  • Cyber Risk Assessment
  • Cyber Security
  • Meta-Game
  • Penetration Testing

ASJC Scopus subject areas

  • Theoretical Computer Science
  • General Computer Science

Fingerprint

Dive into the research topics of 'MEGA-PT: A Meta-game Framework for Agile Penetration Testing'. Together they form a unique fingerprint.

Cite this