Understanding Cyber Situational Awareness in a Cyber Security Game involving Recommendations

International Journal On Cyber Situational Awareness (IJCSA)

ISSN: (Print) 2057-2182 ISSN: (Online) 2057-2182

DOI: 10.22619/IJCSA

Published Semi-annually. Est. 2014

Editor-in-Chief:

Dr Cyril Onwubiko, Chair – Cyber Security & Intelligence, E-Security Group, Research Series, London, UK; IEEE UK & Ireland Section Secretary

Associate Editors:

Professor Frank Wang, Head of School / Professor of Future Computing, Chair IEEE Computer Society, UK&RI, School of Computing, University of Kent, Canterbury, UK

Professor Karen Renaud, Professor of Cyber Security, University of Abertay, Dundee, Scotland, UK


Understanding Cyber Situational Awareness in a Cyber Security Game involving Recommendations

Palvi Aggarwal, Frederic Moisan, Cleotilde Gonzalez, Varun Dutt

Abstract:

Intrusion Detection Systems (IDSs) help in creating cyber situational awareness for defenders by providing recommendations. Prior research in simulation and game-theory has revealed that the presence and accuracy of IDS-like recommendations influence the decisions of defenders and adversaries. In the current paper, we present novel analyses of prior research by analyzing the sequential decisions of defenders and adversaries over repeated trials. Specifically, we developed computational cognitive models based upon Instance-Based Learning Theory (IBLT) to capture the dynamics of the sequential decisions made by defenders and adversaries across numerous conditions that differed in the IDS’s availability and accuracy. We found that cognitive mechanisms based upon recency, frequency, and variability helped account for adversarial and defender decisions better than the optimal Nash solutions. We discuss the implications of our results for adversarial-and-defender decisions in the cyber-world.

Keyword: Behavioral cyber-security; simulated defenders; simulated adversary; Intrusion detection systems; situation awareness; alerts; cyber-security game; Instance-based Learning Theory

ISSN: 2057-2182

Volume 3. No. 1

DOI: 10.22619/IJCSA.2018.100118

Date: Dec. 2018

Reference to this paper should be made as follows: Aggarwal p., Moisan F., Gonzalez C., & Dutt V. (2018). Understanding Cyber Situational Awareness in a Cyber Security Game involving Recommendations. International Journal on Cyber Situational Awareness, Vol. 3, No. 1, pp. 11-38.

PDF Download