A Review of Cyber-Ranges and Test-Beds: Current and Future Trends

Author:

Ukwandu ElochukwuORCID,Farah Mohamed Amine BenORCID,Hindy HananORCID,Brosset DavidORCID,Kavallieros DimitrisORCID,Atkinson RobertORCID,Tachtatzis ChristosORCID,Bures MiroslavORCID,Andonovic IvanORCID,Bellekens XavierORCID

Abstract

Cyber situational awareness has been proven to be of value in forming a comprehensive understanding of threats and vulnerabilities within organisations, as the degree of exposure is governed by the prevailing levels of cyber-hygiene and established processes. A more accurate assessment of the security provision informs on the most vulnerable environments that necessitate more diligent management. The rapid proliferation in the automation of cyber-attacks is reducing the gap between information and operational technologies and the need to review the current levels of robustness against new sophisticated cyber-attacks, trends, technologies and mitigation countermeasures has become pressing. A deeper characterisation is also the basis with which to predict future vulnerabilities in turn guiding the most appropriate deployment technologies. Thus, refreshing established practices and the scope of the training to support the decision making of users and operators. The foundation of the training provision is the use of Cyber-Ranges (CRs) and Test-Beds (TBs), platforms/tools that help inculcate a deeper understanding of the evolution of an attack and the methodology to deploy the most impactful countermeasures to arrest breaches. In this paper, an evaluation of documented CRs and TBs platforms is evaluated. CRs and TBs are segmented by type, technology, threat scenarios, applications and the scope of attainable training. To enrich the analysis of documented CRs and TBs research and cap the study, a taxonomy is developed to provide a broader comprehension of the future of CRs and TBs. The taxonomy elaborates on the CRs/TBs dimensions, as well as, highlighting a diminishing differentiation between application areas.

Publisher

MDPI AG

Subject

Electrical and Electronic Engineering,Biochemistry,Instrumentation,Atomic and Molecular Physics, and Optics,Analytical Chemistry

Reference127 articles.

1. Stuxnet: What Has Changed?

2. Cyber Security in the Age of COVID-19: A Timeline and Analysis of Cyber-Crime and Cyber-Attacks during the Pandemic;Lallie;arXiv,2020

3. Stuxnet’a Game Changer for Malware Defence’;Leyden,2010

4. After Stuxnet: The new rules of cyberwar;Mitchell;Computerworld,2012

5. Computer Virus Stuxnet a ‘Game Changer’, DHS Official Tells Senatehttp://edition.cnn.com/2010/TECH/web/11/17/stuxnet.virus/index.html

Cited by 47 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Hands-on cybersecurity training behavior data for process mining;Data in Brief;2024-02

2. Cybersecurity training and healthcare: the AERAS approach;International Journal of Information Security;2024-01-06

3. SpearSim-V2: Synthetic Task Environment for Evaluating Attacker Behaviors;Proceedings of the Human Factors and Ergonomics Society Annual Meeting;2023-09

4. PHOENI2X – A European Cyber Resilience Framework With Artificial-Intelligence-Assisted Orchestration, Automation & Response Capabilities for Business Continuity and Recovery, Incident Response, and Information Exchange;2023 IEEE International Conference on Cyber Security and Resilience (CSR);2023-07-31

5. SPAT: A Testbed for Automotive Cybersecurity Training;2023 IEEE International Conference on Cyber Security and Resilience (CSR);2023-07-31

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3