Network


Latest external collaboration on country level. Dive into details by clicking on the dots.

Hotspot


Dive into the research topics where Alexandru G. Bardas is active.

Publication


Featured researches published by Alexandru G. Bardas.


Proceedings of the Second ACM Workshop on Moving Target Defense | 2015

A Theory of Cyber Attacks: A Step Towards Analyzing MTD Systems

Rui Zhuang; Alexandru G. Bardas; Scott A. DeLoach; Xinming Ou

Moving Target Defenses (MTD) have been touted as a game changing approach to computer security that eliminates the static nature of current computer systems -- an attackers biggest advantage. While promising, the dynamism of MTD introduces challenges related to understanding and quantifying the impact of MTD systems on security, users, and attackers. To analyze this impact, both the concepts of MTD systems and cyber attacks must be formalized. While a theory of MTD systems was proposed in [18], this paper presents a theory of cyber attacks that supports the understanding and analysis of the interaction between MTD systems and the attacks they hope to thwart. The theory defines key concepts that support precise discussion of attacker knowledge, attack types, and attack instances. The paper also presents concrete examples to show how these definitions and concepts can be used in realistic scenarios.


european symposium on research in computer security | 2017

MTD CBITS: Moving Target Defense for Cloud-Based IT Systems

Alexandru G. Bardas; Sathya Chandran Sundaramurthy; Xinming Ou; Scott A. DeLoach

The static nature of current IT systems gives attackers the extremely valuable advantage of time, as adversaries can take their time and plan attacks at their leisure. Although cloud infrastructures have increased the automation options for managing IT systems, the introduction of Moving Target Defense (MTD) techniques at the entire IT system level is still very challenging. The core idea of MTD is to make a system change proactively as a means to eliminating the asymmetric advantage the attacker has on time. However, due to the number and complexity of dependencies between IT system components, it is not trivial to introduce proactive changes without breaking the system or severely impacting its performance.


IEEE Internet Computing | 2017

Humans Are Dynamic - Our Tools Should Be Too

Sathya Chandran Sundaramurthy; Michael Wesch; Xinming Ou; John McHugh; S. Raj Rajagopalan; Alexandru G. Bardas

Security Operation Centers (SOCs) are being operated by universities, government agencies, and corporations to defend their enterprise networks and identify and thwart malicious behaviors in both networks and hosts. The success of a SOC depends on combining good tools and processes with efficient and effective analysts. During four years of anthropological fieldwork methods to study SOCs, the authors discovered that successful SOC innovations must resolve multiple internal and external conflicts to be effective and efficient. This discovery, guided by activity theory (AT) as a framework for analyzing the fieldwork data, enabled them understand these realities. Their research indicates conflict resolution is a prerequisite for continuous improvement of SOCs in both human and technological aspects. Failure to do so can lead to adverse effects, such as analyst burnout and reduction in overall effectiveness.


CSET'15 Proceedings of the 8th USENIX Conference on Cyber Security Experimentation and Test | 2015

Experimental study of fuzzy hashing in malware clustering analysis

Yuping Li; Sathya Chandran Sundaramurthy; Alexandru G. Bardas; Xinming Ou; Doina Caragea; Xin Hu; Jiyong Jang


symposium on usable privacy and security | 2016

Turning Contradictions into Innovations or: How We Learned to Stop Whining and Improve Security Operations.

Sathya Chandran Sundaramurthy; John McHugh; Xinming Ou; Michael Wesch; Alexandru G. Bardas; S. Raj Rajagopalan


symposium on usable privacy and security | 2015

A Human Capital Model for Mitigating Security Analyst Burnout

Sathya Chandran Sundaramurthy; Alexandru G. Bardas; Jacob Case; Xinming Ou; Michael Wesch; John McHugh; S. Raj Rajagopalan


usenix large installation systems administration conference | 2014

Compiling abstract specifications into concrete systems: bringing order to the cloud

Ian Unruh; Alexandru G. Bardas; Rui Zhuang; Xinming Ou; Scott A. DeLoach


usenix conference on large scale exploits and emergent threats | 2012

Classification of UDP traffic for DDoS detection

Alexandru G. Bardas; Loai Zomlot; Sathya Chandran Sundaramurthy; Xinming Ou; S. Raj Rajagopalan; Marc R. Eisenbarth


international conference on communications | 2018

eyeDNS: Monitoring a University Campus Network

Chandan Chowdhury; Dalton A. Hahn; Matthew R. French; Eugene Y. Vassermann; Pratyusa K. Manadhata; Alexandru G. Bardas


IEEE Internet Computing | 2017

Humans are dynamic. Our tools should be too. Innovations from the Anthropological Study of Security Operations Centers.

Sathya Chandran Sundaramurthy; Michael Wesch; Xinming Ou; John McHugh; S. Raj Rajagopalan; Alexandru G. Bardas

Collaboration


Dive into the Alexandru G. Bardas's collaboration.

Top Co-Authors

Avatar

Xinming Ou

University of South Florida

View shared research outputs
Top Co-Authors

Avatar
Top Co-Authors

Avatar

John McHugh

Carnegie Mellon University

View shared research outputs
Top Co-Authors

Avatar
Top Co-Authors

Avatar
Top Co-Authors

Avatar

Rui Zhuang

Kansas State University

View shared research outputs
Top Co-Authors

Avatar
Top Co-Authors

Avatar

Ian Unruh

Kansas State University

View shared research outputs
Top Co-Authors

Avatar

Jacob Case

Kansas State University

View shared research outputs
Researchain Logo
Decentralizing Knowledge