Skip to main navigation Skip to search Skip to main content

Evaluating threat assessment for multi-stage cyber attacks

  • Rochester Institute of Technology
  • CUBRC

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

21 Scopus citations

Abstract

Current practices to defend against cyber attacks are typically reactive yet passive. Recent research work has been proposed to proactively predict hacker's target entities in the early stage of the attack. With prediction, there comes false alarms and missed attacks. Very little has been reported on how to evaluate a threat assessment algorithm, especially for cyber security. Because of the variety and the constantly changing nature of hacker behavior and network vulnerabilities, a cyber threat assessment algorithm is, perhaps more susceptible that for other application domains. This work sets forth the issues on evaluating cyber threat assessment algorithms, and discusses the validity of various statistical measures. Simulation examples are provided to illustrate the pros and cons of using different metrics under various cyber attack scenarios. Our results show that commonly used false positives and false negatives are necessary but not sufficient to evaluate cyber threat assessment.

Original languageEnglish
Title of host publicationMilitary Communications Conference 2006, MILCOM 2006
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Print)1424406188, 9781424406180
DOIs
StatePublished - 2006
EventMilitary Communications Conference 2006, MILCOM 2006 - Washington, D.C., United States
Duration: Oct 23 2006Oct 25 2006

Publication series

NameProceedings - IEEE Military Communications Conference MILCOM

Conference

ConferenceMilitary Communications Conference 2006, MILCOM 2006
Country/TerritoryUnited States
CityWashington, D.C.
Period10/23/0610/25/06

Fingerprint

Dive into the research topics of 'Evaluating threat assessment for multi-stage cyber attacks'. Together they form a unique fingerprint.

Cite this