作者
Yumeng Zhang, Max Ward, Mingyu Guo, Hung Nguyen
发表日期
2023/7/10
图书
Proceedings of the 2023 ACM Asia Conference on Computer and Communications Security
页码范围
993-1003
简介
Active Directory (AD) is a popular information security management system for Windows domain networks and is an ongoing common target for cyber attacks. Most real-world Active Directory systems consist of millions of entities and links, and there are currently no efficient and effective solutions for hardening Active Directory systems of such scale. In this paper, we propose a novel and scalable double oracle-based algorithm for hardening large AD systems. We formulate the problem as a Stackelberg game between the defender and the attacker on a weighted AD attack graph, where the defender acts as the leader with a budget, and the objective is to find an optimal defender’s pure strategy. We show that our double oracle-based solution has significantly improved speed and scalability compared with previous solutions for hardening AD systems. Lastly, we compare with GoodHound weakest links and show that …
引用总数
学术搜索中的文章
Y Zhang, M Ward, M Guo, H Nguyen - Proceedings of the 2023 ACM Asia Conference on …, 2023