GameSec: A Game Theoretic Approach to Attack Prediction

2002-2005: DOE Early Career Principle Investigator Award

Cyber security is not only an important science and technology issue, but also a critical national security issue. The ability to predict attacks can dramatically enhance people's capacity to defend cyber attacks since attack prediction has the potential to evolve existing passive (or reactive) secure systems into (pro)active secure systems. This research suggests a game theoretic approach to predict cyber attacks. Our approach models a cyber system and an attacker as two players playing a game, and the Nash equilibrium strategies of the game can produce valuable predictions about cyber attacks.  The predictions produced by our approach can tell which actions the attacker will probably take when an attack happens, although they cannot tell when the attack will probably happen.  Our approach not only can predict (the actions of) known types of attacks, but also can predict (the actions of) some unknown (or new) types of attacks.


