Design, Implementation and Evaluation of a Moving Target Defense in Distributed Systems

dc.contributor.authorTibom, Philip
dc.contributor.authorBuck, Max
dc.contributor.departmentChalmers tekniska högskola / Institutionen för data och informationstekniksv
dc.contributor.departmentChalmers University of Technology / Department of Computer Science and Engineeringen
dc.contributor.examinerGulisano, Vincenzo Massimiliano
dc.contributor.supervisorAli-Eldin Hassan, Ahmed
dc.date.accessioned2022-10-28T11:43:55Z
dc.date.available2022-10-28T11:43:55Z
dc.date.issued2022
dc.date.submitted2020
dc.description.abstractCloud computing has recently become increasingly popular for server hosting. Additionally, a new model of cloud computing has emerged where cloud resources are placed at the edge of the network closer to the user. Both cloud and edge systems share many common security concerns, however, edge systems may suffer an increased risk of physical tampering and destruction. One way to harden the security in both cloud and edge systems is to use a technique called Moving Target Defense. The technique can be likened to the idea of frequency hopping in secure communication systems. Moving Target Defense is not yet widely adopted by industry and the current research in the area is very limited. Additionally, to our knowledge, there are no open-source implementations that can be easily replicated. The Moving Target Defense proposed in this thesis is an open-source implementation and can move a critical application between virtual and physical nodes in order to avoid and confuse adversaries. In addition to the implementation, we performed security, availability, and performance tests on the system. The results show that our system is able to successfully thwart some types of attacks while not significantly impacting availability and performance.
dc.identifier.coursecodeDATX05
dc.identifier.urihttps://odr.chalmers.se/handle/20.500.12380/305778
dc.language.isoeng
dc.setspec.uppsokTechnology
dc.subjectmoving target defense
dc.subjectdistributed systems
dc.subjectkubernetes
dc.subjectcluster
dc.subjectcloud
dc.titleDesign, Implementation and Evaluation of a Moving Target Defense in Distributed Systems
dc.type.degreeExamensarbete för masterexamensv
dc.type.degreeMaster's Thesisen
dc.type.uppsokH
local.programmeComputer systems and networks (MPCSN), MSc
Ladda ner
Original bundle
Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
CSE 22-134 Tibom Buck.pdf
Storlek:
1.09 MB
Format:
Adobe Portable Document Format
Beskrivning:
License bundle
Visar 1 - 1 av 1
Hämtar...
Bild (thumbnail)
Namn:
license.txt
Storlek:
1.64 KB
Format:
Item-specific license agreed upon to submission
Beskrivning: