April 17, 2023, 1:12 a.m. | Kim Hammar, Rolf Stadler

cs.CR updates on arXiv.org arxiv.org

We study automated intrusion response and formulate the interaction between
an attacker and a defender as an optimal stopping game where attack and defense
strategies evolve through reinforcement learning and self-play. The
game-theoretic modeling enables us to find defender strategies that are
effective against a dynamic attacker, i.e. an attacker that adapts its strategy
in response to the defender strategy. Further, the optimal stopping formulation
allows us to prove that optimal strategies have threshold properties. To obtain
near-optimal defender strategies, …

algorithm attack attackers automated defender defense defense strategies dynamic find game intrusion intrusion response modeling near play prove response strategy study

IT Security Engineer

@ Timocom GmbH | Erkrath, Germany

Consultant SOC / CERT H/F

@ Hifield | Sèvres, France

Privacy Engineer, Implementation Review

@ Meta | Menlo Park, CA | Seattle, WA

Cybersecurity Specialist (Security Engineering)

@ Triton AI Pte Ltd | Singapore, Singapore, Singapore

SOC Analyst

@ Rubrik | Palo Alto

Consultant Tech Advisory H/F

@ Hifield | Sèvres, France