Scalable Cyber Deception (Ragsdale)

7
Approved for Public Release, Distribution Unlimited. Dan “Rags” Ragsdale Program Manager, Information Innovation Office DARPA Cyber Colloquium Arlington, VA November 7, 2011 Scalable Cyber Deception

description

Presentation from the Colloquium on Future Directions in Cyber Security on Nov 7, 2011.

Transcript of Scalable Cyber Deception (Ragsdale)

Page 1: Scalable Cyber Deception (Ragsdale)

Approved for Public Release, Distribution Unlimited.

Dan “Rags” Ragsdale Program Manager, Information Innovation Office

DARPA Cyber Colloquium Arlington, VA

November 7, 2011

Scalable Cyber Deception

Page 2: Scalable Cyber Deception (Ragsdale)

Deception in Warfare

“All warfare is based on deception…” Sun Tzu

http://www.ng.mil/Images1/today/0501b.jpg

Deception: A direct counter to asymmetrical threats

Approved for Public Release, Distribution Unlimited.

Page 3: Scalable Cyber Deception (Ragsdale)

Approved for Public Release, Distribution Unlimited.

Intrusion attempts on a Government agency

An Opportunity?

• 40,000 blocked intrusion attempts/week • World-wide attack sources

Page 4: Scalable Cyber Deception (Ragsdale)

Approved for Public Release, Distribution Unlimited.

An Example Architecture for Cyber Deception

Page 5: Scalable Cyber Deception (Ragsdale)

Generation and Deployment of both Decoy Products and Infrastructure

• Automated • Realistic, Credible, Enticing • Tailorable • Differentiable / Non-differentiable • Noninterference

Scalable Cyber Deception Issues

Approved for Public Release, Distribution Unlimited.

Page 6: Scalable Cyber Deception (Ragsdale)

Promising Applicable Research Areas: • Natural Language Processing

• Large-scale Virtualization

• Realistic Synthetic Activity Generation

• Protocol Manipulation and Exploitation

• Behavioral Science

• Others…

Key Technical Challenge

To significantly increase adversaries’ workloads with minimal increase to our own

Approved for Public Release, Distribution Unlimited.

Page 7: Scalable Cyber Deception (Ragsdale)

Scalable and Tailorable Cyber Deception

Please send input to:

[email protected]

Approved for Public Release, Distribution Unlimited.