Adaptive Mitigation of Multi-Virus Propagation: A Passivity-Based Approach

Phillip Lee,Andrew Clark,Basel Alomair,Linda Bushnell,Radha Poovendran
DOI: https://doi.org/10.48550/arXiv.1603.04374
2016-09-21
Abstract:Malware propagation poses a growing threat to networked systems such as computer networks and cyber-physical systems. Current approaches to defending against malware propagation are based on patching or filtering susceptible nodes at a fixed rate. When the propagation dynamics are unknown or uncertain, however, the static rate that is chosen may be either insufficient to remove all viruses or too high, incurring additional performance cost. In this paper, we formulate adaptive strategies for mitigating multiple malware epidemics when the propagation rate is unknown, using patching and filtering-based defense mechanisms. In order to identify conditions for ensuring that all viruses are asymptotically removed, we show that the malware propagation, patching, and filtering processes can be modeled as coupled passive dynamical systems. We prove that the patching rate required to remove all viruses is bounded above by the passivity index of the coupled system, and formulate the problem of selecting the minimum-cost mitigation strategy. Our results are evaluated through numerical study.
Systems and Control,Cryptography and Security
What problem does this paper attempt to address?