Study on the intelligent honeynet model for containing the spread of industrial viruses

Chuan Sheng,Yu Yao,Qiang Fu,Wei Yang,Ying Liu
DOI: https://doi.org/10.1016/j.cose.2021.102460
2021-12-01
Abstract:The honeynet, as a promising technology, is increasingly used to actively discover novel network viruses in order to provide more effective defense strategies for the protected network in advance. The state-of-the-art network models aim to investigate the mutual effect between the honeynet and the protected network, however they have not fully exploited the potential of the intelligent honeynet. Compared with the conventional honeynet, the intelligent honeynet has made great progress in data control, data analysis, dynamic deployment, etc., which can provide more valuable information and flexible defense mechanisms for network defenders. In this paper, we propose a novel mathematical model of the intelligent honeynet to explore and prevent the propagation of industrial viruses in the Supervisory Control and Data Acquisition (SCADA) network. Through combining the intelligent honeynet with some traditional defense measures, we present a comprehensive and practical defense mechanism for the SCADA network, which can provide active and dynamic system-level and network-level defense. A theoretical analysis is provided to obtain the virus-free and virose equilibriums and demonstrate the locally and globally asymptotic stabilities of the proposed model. Moreover, A large number of numerical experiments are conducted to confirm the theoretical analysis and the superior defense performance of the proposed defense mechanism over the existing models.
computer science, information systems
What problem does this paper attempt to address?