A hybrid quarantine defense

  • Authors:
  • Phillip Porras;Linda Briesemeister;Keith Skinner;Karl Levitt;Jeff Rowe;Yu-Cheng Allen Ting

  • Affiliations:
  • SRI International, Menlo Park, CA;SRI International, Menlo Park, CA;SRI International, Menlo Park, CA;University of California at Davis, Davis, CA;University of California at Davis, Davis, CA;University of California at Davis, Davis, CA

  • Venue:
  • Proceedings of the 2004 ACM workshop on Rapid malcode
  • Year:
  • 2004

Quantified Score

Hi-index 0.00

Visualization

Abstract

We study the strengths, weaknesses, and potential synergies of two complementary worm quarantine defense strategies under various worm attack profiles. We observe their abilities to delay or suppress infection growth rates under two propagation techniques and three scan rates, and explore the potential synergies in combining these two complementary quarantine strategies. We compare the performance of the individual strategies against a hybrid combination strategy, and conclude that the hybrid strategy yields substantial performance improvements, beyond what either technique provides independently. This result offers potential new directions in hybrid quarantine defenses.