DocumentCode :
2117973
Title :
Attacking agent-based systems
Author :
Parks, Raymond C. ; Jung, Robert A. ; Ramotowski, Kendale O.
Author_Institution :
Sandia Nat. Labs., Albuquerque, NM, USA
fYear :
2004
fDate :
30-31 Aug. 2004
Firstpage :
31
Lastpage :
34
Abstract :
Agent-based systems add unique aspects to assessment activity and require the use of traditional tools and techniques in new or unconventional ways and the development of new, domain-customized tools. Agent-based system assessments must address the same issues as those of traditional systems: unsafe programming practices, such as failure to validate inputs or use of insecure libraries. Assessments of agent-based systems should also include "system-of-systems" concepts. Complex systems interact with and rely on other systems that may exist independently. A system-of-systems assessment identifies systems and their behaviors and considers ways that those behaviors can interact to harm the complex system. Attacks are then developed to cause the desired behavior. Agent-based systems are aware of and respond to their environment through adaptation and evolution. They require assessment through concepts normally reserved for humans. Just as adversaries cause humans to react in ways advantageous to the attacker, agent-based system assessors must cause agents to react. These assessments require "social engineering" of the agents just as simpler systems may require "social engineering" of users and administrators. This paper discusses the application of existing and new tools and techniques to agent system assessments including descriptions of actual and theoretical attacks.
Keywords :
large-scale systems; multi-agent systems; security of data; agent-based system; assessment activity; complex system; insecure libraries; intelligent agents; multiagent system; network-level protection; network-level security; social engineering; system-of-systems assessment; theoretical attacks; unsafe programming practices; Autonomous agents; Humans; Information security; Intelligent agent; Laboratories; Libraries; Multiagent systems; National security; Organizing; Protection;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Multi-Agent Security and Survivability, 2004 IEEE First Symposium on
Print_ISBN :
0-7803-8799-6
Type :
conf
DOI :
10.1109/MASSUR.2004.1368415
Filename :
1368415
Link To Document :
بازگشت