Effect of Security Investment on Evolutionary Games
In this paper, we propose an evolutionary game model to analyze the investment decision making process in the cyber offender-defender interaction and provide a quantified approach for defender to calculate the safety threshold to avoid the occurrence of offender-leading game. Then we use simulation...
Saved in:
Published in | Journal of Information Science and Engineering Vol. 30; no. 6; pp. 1695 - 1718 |
---|---|
Main Authors | , , , |
Format | Journal Article |
Language | English |
Published |
Taipei
社團法人中華民國計算語言學學會
01.11.2014
Institute of Information Science, Academia sinica |
Subjects | |
Online Access | Get full text |
Cover
Loading…
Summary: | In this paper, we propose an evolutionary game model to analyze the investment decision making process in the cyber offender-defender interaction and provide a quantified approach for defender to calculate the safety threshold to avoid the occurrence of offender-leading game. Then we use simulation as a workbench to discuss the adjustment of each parameter to the security investment threshold. Our evolutionary game model shows that the cyber offender-defender game can possibly reach one realistic stable point after a long-term evolution, which implicates a tied offender-defender game. We found that an offender-leading game can be avoided by maintaining the security investment above a safety threshold level determined by the system vulnerability among other environmental parameters such as residual risk and potential loss. Hence with an optimal level of security investment, the defender can lead the game effectively to discourage attacking attempts. Both linear and nonlinear simulations share similar trends and our evolutionary game theoretic analysis remains valid in either case. |
---|---|
Bibliography: | ObjectType-Article-1 SourceType-Scholarly Journals-1 ObjectType-Feature-2 content type line 23 |
ISSN: | 1016-2364 |
DOI: | 10.6688/JISE.2014.30.6.2 |