Dynamic network security deployment under partial information
- 1 September 2008
- conference paper
- conference paper
- Published by Institute of Electrical and Electronics Engineers (IEEE)
Abstract
A network user's decision to start and continue using security products is based on economic considerations. The cost of a security compromise (e.g., worm infection) is compared against the cost of deploying and maintaining a sufficient level of security. These costs are not necessarily the real ones, but rather the perceived costs, which depend on the amount of information available to a user at each time. Moreover, the costs (whether real or perceived) depend on the decisions of other users, too: The probability of a user getting infected depends on the security deployed by all the other users. In this paper, we combine an epidemic model for malware propagation in a network with a game theoretic model of the users' decisions to deploy security or not. Users can dynamically change their decision in order to maximize their currently perceived utility. We study the equilibrium points, and their dependence on the speed of the learning process through which the users learn the state of the network. We find that the faster the learning process, the higher the total network cost.Keywords
This publication has 16 references indexed in Scilit:
- The projection dynamic and the replicator dynamicGames and Economic Behavior, 2008
- Network externalities and the deployment of security features and protocols in the internetPublished by Association for Computing Machinery (ACM) ,2008
- The wireless epidemicNature, 2007
- Malware Goes MobileScientific American, 2006
- Evolution and equilibrium under inexact informationGames and Economic Behavior, 2003
- Code red worm propagation modeling and analysisPublished by Association for Computing Machinery (ACM) ,2002
- Potential GamesGames and Economic Behavior, 1996
- The Differential Geometry of Population Genetics and Evolutionary GamesPublished by Springer Science and Business Media LLC ,1990
- A new mathematical framework for the study of linkage and selectionMemoirs of the American Mathematical Society, 1979
- A contribution to the mathematical theory of epidemicsProceedings of the Royal Society of London. Series A, Containing Papers of a Mathematical and Physical Character, 1927