Cyber as a Service: Automating First Responders’ Service in the Cyberspace

M. Blair, Davis Jeffords, Eric Lilling, S. Banik
{"title":"Cyber as a Service: Automating First Responders’ Service in the Cyberspace","authors":"M. Blair, Davis Jeffords, Eric Lilling, S. Banik","doi":"10.1109/CSCI51800.2020.00028","DOIUrl":null,"url":null,"abstract":"Due to increasing number of attacks in the cyberspace that deals with different types of users, it is imperative that an automated responder service will be efficient to help the users detect and mitigate different types of attacks in their systems. In this research, we propose to replicate the framework of emergency responder service (911) of the physical space to the cyberspace. Towards this we propose a framework for Cyber-as-a-Service for end-users. In our proposed model, we have three entities: the Dispatch Center, the Guard, and the Client Software. These entities will communicate with each other to detect and extinguish any malicious activity on the host computer. The host machine will run a software that scans and detects any abnormal or malicious activity and communicates this activity to the Guard, which then replies with an executable resolution back to the host. Meanwhile, the Dispatch Center manages connections between hosts and Guards to ensure that hosts are connected to the optimal Guard. We propose algorithms that will place and distribute the Dispatch Center and the Guards. These algorithms allow for fair distribution of Guards, as well as balance the workload among the Guards. We propose the communication protocol that will take place between the Client software, Guards and the Dispatch Center. Our goal is to design the framework for Cyber-as-a-Service for everyday users in the cyberspace who do not have sufficient technical skills to manage tools to detect different attacks.","PeriodicalId":336929,"journal":{"name":"2020 International Conference on Computational Science and Computational Intelligence (CSCI)","volume":"146 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 International Conference on Computational Science and Computational Intelligence (CSCI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CSCI51800.2020.00028","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Due to increasing number of attacks in the cyberspace that deals with different types of users, it is imperative that an automated responder service will be efficient to help the users detect and mitigate different types of attacks in their systems. In this research, we propose to replicate the framework of emergency responder service (911) of the physical space to the cyberspace. Towards this we propose a framework for Cyber-as-a-Service for end-users. In our proposed model, we have three entities: the Dispatch Center, the Guard, and the Client Software. These entities will communicate with each other to detect and extinguish any malicious activity on the host computer. The host machine will run a software that scans and detects any abnormal or malicious activity and communicates this activity to the Guard, which then replies with an executable resolution back to the host. Meanwhile, the Dispatch Center manages connections between hosts and Guards to ensure that hosts are connected to the optimal Guard. We propose algorithms that will place and distribute the Dispatch Center and the Guards. These algorithms allow for fair distribution of Guards, as well as balance the workload among the Guards. We propose the communication protocol that will take place between the Client software, Guards and the Dispatch Center. Our goal is to design the framework for Cyber-as-a-Service for everyday users in the cyberspace who do not have sufficient technical skills to manage tools to detect different attacks.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
网络即服务:网络空间中第一响应者服务的自动化
由于网络空间中处理不同类型用户的攻击数量不断增加,因此自动响应器服务必须能够有效地帮助用户检测和减轻其系统中不同类型的攻击。在本研究中,我们建议将物理空间的应急响应服务(911)框架复制到网络空间。为此,我们提出了一个面向最终用户的网络即服务框架。在我们提出的模型中,我们有三个实体:调度中心、警卫和客户端软件。这些实体将相互通信,以检测和消灭主机上的任何恶意活动。主机将运行一个软件,扫描并检测任何异常或恶意活动,并将此活动发送给Guard,然后Guard将可执行的解决方案回复给主机。同时,调度中心对主机和Guard之间的连接进行管理,确保主机连接到最优的Guard。我们提出的算法将放置和分配调度中心和警卫。这些算法允许警卫的公平分配,以及平衡警卫之间的工作量。我们提出将在客户端软件、警卫和调度中心之间进行的通信协议。我们的目标是为网络空间中的日常用户设计网络即服务框架,这些用户没有足够的技术技能来管理工具来检测不同的攻击。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
First Success of Cancer Gene Data Analysis of 169 Microarrays for Medical Diagnosis Artificial Intelligence in Computerized Adaptive Testing Evidence for Monitoring the User and Computing the User’s trust Transfer of Hierarchical Reinforcement Learning Structures for Robotic Manipulation Tasks An open-source application built with R programming language for clinical laboratories to innovate process of excellence and overcome the uncertain outlook during the global healthcare crisis
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1