Skip to main navigation Skip to search Skip to main content

A Review of Attacker–Defender Games and Cyber Security

  • University of Stavanger
  • RAND Corporation

Research output: Contribution to journalReview articlepeer-review

15 Scopus citations

Abstract

The focus of this review is the long and broad history of attacker–defender games as a foundation for the narrower and shorter history of cyber security. The purpose is to illustrate the role of game theory in cyber security and which areas have received attention and to indicate future research directions. The methodology uses the search terms game theory, attack, defense, and cyber security in Web of Science, augmented with the authors’ knowledge of the field. Games may involve multiple attackers and defenders over multiple periods. Defense involves security screening and inspection, the detection of invaders, jamming, secrecy, and deception. Incomplete information is reviewed due to its inevitable presence in cyber security. The findings pertain to players sharing information weighted against the security investment, influenced by social planning. Attackers stockpile zero-day cyber vulnerabilities. Defenders build deterrent resilient systems. Stochastic cyber security games play a role due to uncertainty and the need to build probabilistic models. Such games can be further developed. Cyber security games based on traffic and transportation are reviewed; they are influenced by the more extensive communication of GPS data. Such games should be extended to comprise air, land, and sea. Finally, cyber security education and board games are reviewed, which play a prominent role.

Original languageEnglish
Article number28
JournalGames
Volume15
Issue number4
DOIs
StatePublished - Aug 2024

Keywords

  • attack
  • cyber security
  • defense
  • game theory

Fingerprint

Dive into the research topics of 'A Review of Attacker–Defender Games and Cyber Security'. Together they form a unique fingerprint.

Cite this