A Model of APT Attack Defense Based on Cyber Threat Detection

Yue Li,Teng Zhang,Xue Li,Ting Li
DOI: https://doi.org/10.1007/978-981-13-6621-5_10
2019-01-01
Abstract:AbstractThe targets of Advanced Persistent Threat (APT) are mainly concentrate on national key information infrastructure, key research institutes, and large commercial companies, for the purpose of stealing sensitive information, trade secrets or destroying important infrastructure. Traditional protection system is difficult to detect the APT attack, due to the method of the APT attack is unknown and uncertain. And the persisted evolution ability destroyed the traditional protection methods based on feature detection. Therefore, this paper based on the theory of red-blue confrontation, to construct the game model of attack and defense. And then combined the APT offense and defense experience, presents a model based on cyber threat detection to deal with APT attacks.
What problem does this paper attempt to address?