Multi-agent framework for simulation of adaptive cooperative defense against internet attacks

  • Authors:
  • Igor Kotenko;Alexander Ulanov

  • Affiliations:
  • Computer Security Research Group, St. Petersburg Institute for Informatics and Automation, St.-Petersburg, Russia;Computer Security Research Group, St. Petersburg Institute for Informatics and Automation, St.-Petersburg, Russia

  • Venue:
  • AIS-ADM'07 Proceedings of the 2nd international conference on Autonomous intelligent systems: agents and data mining
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

The paper proposes the framework for investigation of prospective adaptive and cooperative defense mechanisms against the Internet attacks. The approach suggested is based on the multi-agent modeling and simulation. According to the approach the defense and attack systems are represented as interacting teams of intelligent agents that act under some adaptation criterion. They adjust their configuration and behavior in compliance with the network conditions and attack (defense) severity. The paper represents the architecture and software implementation of simulation environment that combines discrete-event simulation, multi-agent approach and packet-level simulation of various Internet protocols. The environment allows to simulate complex attack and defense scenarios. The paper describes the experiments aimed on the investigation of adaptive "Distributed Denial of Service" attacks and defense mechanisms.