An event-trace language for software decoys

Approved for public release, distribution is unlimited === Cyberspace is becoming the battlespace of the future, and military practices, like deception, seem to be suitable for defending information systems from attacks. In this thesis, we explore the concept of intelligent software decoys, which em...

Full description

Bibliographic Details
Main Author: Fragkos, Georgios
Other Authors: Michael, James Bret
Published: Monterey, California. Naval Postgraduate School 2012
Online Access:http://hdl.handle.net/10945/5266
Description
Summary:Approved for public release, distribution is unlimited === Cyberspace is becoming the battlespace of the future, and military practices, like deception, seem to be suitable for defending information systems from attacks. In this thesis, we explore the concept of intelligent software decoys, which employ a form of software-based military deception. We developed a prototype of a high-level language for specifying intelligent software decoys. Our approach involves two stages. The specification language is intended to be part of a high-level user interface, making the implementation details of software decoys transparent to the information warrior. We provide a case study in which we demonstrate the utility of our specification language for specifying software decoys to counter a real-word attack program.