Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

Dynamic defense and network randomization for computer systems

Patent ·
OSTI ID:1452909

The various technologies presented herein relate to determining a network attack is taking place, and further to adjust one or more network parameters such that the network becomes dynamically configured. A plurality of machine learning algorithms are configured to recognize an active attack pattern. Notification of the attack can be generated, and knowledge gained from the detected attack pattern can be utilized to improve the knowledge of the algorithms to detect a subsequent attack vector(s). Further, network settings and application communications can be dynamically randomized, wherein artificial diversity converts control systems into moving targets that help mitigate the early reconnaissance stages of an attack. An attack(s) based upon a known static address(es) of a critical infrastructure network device(s) can be mitigated by the dynamic randomization. Network parameters that can be randomized include IP addresses, application port numbers, paths data packets navigate through the network, application randomization, etc.

Research Organization:
Sandia National Laboratories (SNL-NM), Albuquerque, NM (United States)
Sponsoring Organization:
USDOE
DOE Contract Number:
AC04-94AL85000
Assignee:
National Technology & Engineering Solutions of Sandia, LLC (Albuquerque, NM)
Patent Number(s):
9,985,984
Application Number:
14/923,049
OSTI ID:
1452909
Country of Publication:
United States
Language:
English

References (5)

Nonparametric semi-supervised learning for network intrusion detection: combining performance improvements with realistic in-situ training conference January 2012
Host Side Dynamic Reconfiguration with InfiniBand conference September 2010
Defending against hitlist worms using network address space randomization journal August 2007
Improving Performance of Anomaly-Based IDS by Combining Multiple Classifiers conference July 2011
Multiattribute SCADA-Specific Intrusion Detection System for Power Networks journal June 2014

Similar Records

Artificial Diversity and Defense Security (ADDSec) Final Report
Technical Report · Sun Apr 01 00:00:00 EDT 2018 · OSTI ID:1435900

Artificial Diversity and Defense Security (ADDSec)
Software · Wed May 26 20:00:00 EDT 2021 · OSTI ID:code-61761

Moving Target Defense for Space Systems [Slides]
Technical Report · Mon Jan 20 23:00:00 EST 2020 · OSTI ID:1592959

Related Subjects