Moving target systems can help defenders limit the utility of reconnaissance for adversaries, hindering the effectiveness of attacks. While moving target systems are a topic of robust research, we find that prior work in network-based mov-ing target defenses has limitations in either scalability or the ability to protect public servers accessible to unmodi-fied clients. In this work, we present a new moving target defense using software-defined networking (SDN) that can service unmodified clients while avoiding scalability limita-tions. We then evaluate this approach according to seven moving-target properties and evaluate its performance. We find that the approach achieves its security goals while in-troducing low overheads. 1
Crossfire is an indirect target area link-flooding Distributed Denial of Service (DDoS) attack deter...
Due to the constrained resource and computational limitation of many Internet of Things (IoT) device...
Moving Target Defense (MTD) has been emerged as a promising countermeasure to defend systems against...
Software-Defined Networking (SDN) dissociates the control plane from the data plane, creating a cent...
The motivation behind Software-Defined Networking (SDN) is to allow services and network capabilitie...
Static IP addresses make the network vulnerable to different attacks and once the machines are compr...
The use of traditional defense mechanisms or intrusion detection systems presents a disadvantage for...
Intent-Based Networking (IBN) is an emerging networking paradigm while Moving Target Defense (MTD) i...
Software Defined Networking (SDN) networking paradigm advancements are advantageous, but they have a...
Critical infrastructure systems continue to foster predictable communication patterns and static con...
A Software Defined Network (SDN) provides functionalities for modifying network configurations. To e...
Moving target defense (MTD) is a proactive defense mechanism of changing the attack surface to incre...
The static nature of many of currently used network systems has multiple practical benefits, includi...
Moving Target Defense (MTD) was proposed as a promising defense paradigm to introduce v...
Moving target defense (MTD) has provided a dynamic and proactive network defense to reduce or move t...
Crossfire is an indirect target area link-flooding Distributed Denial of Service (DDoS) attack deter...
Due to the constrained resource and computational limitation of many Internet of Things (IoT) device...
Moving Target Defense (MTD) has been emerged as a promising countermeasure to defend systems against...
Software-Defined Networking (SDN) dissociates the control plane from the data plane, creating a cent...
The motivation behind Software-Defined Networking (SDN) is to allow services and network capabilitie...
Static IP addresses make the network vulnerable to different attacks and once the machines are compr...
The use of traditional defense mechanisms or intrusion detection systems presents a disadvantage for...
Intent-Based Networking (IBN) is an emerging networking paradigm while Moving Target Defense (MTD) i...
Software Defined Networking (SDN) networking paradigm advancements are advantageous, but they have a...
Critical infrastructure systems continue to foster predictable communication patterns and static con...
A Software Defined Network (SDN) provides functionalities for modifying network configurations. To e...
Moving target defense (MTD) is a proactive defense mechanism of changing the attack surface to incre...
The static nature of many of currently used network systems has multiple practical benefits, includi...
Moving Target Defense (MTD) was proposed as a promising defense paradigm to introduce v...
Moving target defense (MTD) has provided a dynamic and proactive network defense to reduce or move t...
Crossfire is an indirect target area link-flooding Distributed Denial of Service (DDoS) attack deter...
Due to the constrained resource and computational limitation of many Internet of Things (IoT) device...
Moving Target Defense (MTD) has been emerged as a promising countermeasure to defend systems against...