Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

A Probabilistic Framework for Quantifying Mixed Uncertainties in Cyber Attacker Payoffs

Journal Article · · National Cybersecurity Institute Journal
OSTI ID:1236918

Quantification and propagation of uncertainties in cyber attacker payoffs is a key aspect within multiplayer, stochastic security games. These payoffs may represent penalties or rewards associated with player actions and are subject to various sources of uncertainty, including: (1) cyber-system state, (2) attacker type, (3) choice of player actions, and (4) cyber-system state transitions over time. Past research has primarily focused on representing defender beliefs about attacker payoffs as point utility estimates. More recently, within the physical security domain, attacker payoff uncertainties have been represented as Uniform and Gaussian probability distributions, and mathematical intervals. For cyber-systems, probability distributions may help address statistical (aleatory) uncertainties where the defender may assume inherent variability or randomness in the factors contributing to the attacker payoffs. However, systematic (epistemic) uncertainties may exist, where the defender may not have sufficient knowledge or there is insufficient information about the attacker’s payoff generation mechanism. Such epistemic uncertainties are more suitably represented as generalizations of probability boxes. This paper explores the mathematical treatment of such mixed payoff uncertainties. A conditional probabilistic reasoning approach is adopted to organize the dependencies between a cyber-system’s state, attacker type, player actions, and state transitions. This also enables the application of probabilistic theories to propagate various uncertainties in the attacker payoffs. An example implementation of this probabilistic framework and resulting attacker payoff distributions are discussed. A goal of this paper is also to highlight this uncertainty quantification problem space to the cyber security research community and encourage further advancements in this area.

Research Organization:
Pacific Northwest National Laboratory (PNNL), Richland, WA (US)
Sponsoring Organization:
USDOE
DOE Contract Number:
AC05-76RL01830
OSTI ID:
1236918
Report Number(s):
PNNL-SA-114140
Journal Information:
National Cybersecurity Institute Journal, Journal Name: National Cybersecurity Institute Journal Journal Issue: 3 Vol. 2; ISSN 2333-7184
Country of Publication:
United States
Language:
English

Similar Records

Quantifying Mixed Uncertainties in Cyber Attacker Payoffs
Conference · Wed Apr 15 00:00:00 EDT 2015 · OSTI ID:1214899

Propagating Mixed Uncertainties in Cyber Attacker Payoffs: Exploration of Two-Phase Monte Carlo Sampling and Probability Bounds Analysis
Conference · Fri Sep 16 00:00:00 EDT 2016 · OSTI ID:1334867

Cyber Threat Screening Using a Queuing-Based Game-Theoretic Approach
Journal Article · Sun Dec 01 23:00:00 EST 2019 · Journal of Information Warfare · OSTI ID:1595269