Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review

Cybersecurity has become a prominent issue in regard to ensuring information privacy and integrity in the internet age particularly with the rise of interconnected devices. However, advanced persistent threats (APTs) pose a significant danger to the current contemporary way of life, and effective AP...

Full description

Bibliographic Details
Main Authors: Mohd Nor Akmal Khalid, Amjed Ahmed Al-Kadhimi, Manmeet Mahinderjit Singh
Format: Article
Language:English
Published: MDPI AG 2023-03-01
Series:Mathematics
Subjects:
Online Access:https://www.mdpi.com/2227-7390/11/6/1353
_version_ 1797610367814205440
author Mohd Nor Akmal Khalid
Amjed Ahmed Al-Kadhimi
Manmeet Mahinderjit Singh
author_facet Mohd Nor Akmal Khalid
Amjed Ahmed Al-Kadhimi
Manmeet Mahinderjit Singh
author_sort Mohd Nor Akmal Khalid
collection DOAJ
description Cybersecurity has become a prominent issue in regard to ensuring information privacy and integrity in the internet age particularly with the rise of interconnected devices. However, advanced persistent threats (APTs) pose a significant danger to the current contemporary way of life, and effective APT detection and defense are vital. Game theory is one of the most sought-after approaches adopted against APTs, providing a framework for understanding and analyzing the strategic interactions between attackers and defenders. However, what are the most recent developments in game theory frameworks against APTs, and what approaches and contexts are applied in game theory frameworks to address APTs? In this systematic literature review, 48 articles published between 2017 and 2022 in various journals were extracted and analyzed according to PRISMA procedures and our formulated research questions. This review found that game-theory approaches have been optimized for the defensive performance of security measures and implemented to anticipate and prepare for countermeasures. Many have been designed as part of incentive-compatible and welfare-maximizing contracts and then applied to cyber–physical systems, social networks, and transportation systems, among others. The trends indicate that game theory provides the means to analyze and understand complex security scenarios based on technological advances, changes in the threat landscape, and the emergence of new trends in cyber-crime. In this study, new opportunities and challenges against APTs are outlined, such as the ways in which tactics and techniques to bypass defenses are likely to evolve in order to evade detection, and we focused on specific industries and sectors of high interest or value (e.g., healthcare, finance, critical infrastructure, and the government).
first_indexed 2024-03-11T06:13:27Z
format Article
id doaj.art-8031809006b14c1eb3f5881ffdf58ac7
institution Directory Open Access Journal
issn 2227-7390
language English
last_indexed 2024-03-11T06:13:27Z
publishDate 2023-03-01
publisher MDPI AG
record_format Article
series Mathematics
spelling doaj.art-8031809006b14c1eb3f5881ffdf58ac72023-11-17T12:27:24ZengMDPI AGMathematics2227-73902023-03-01116135310.3390/math11061353Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic ReviewMohd Nor Akmal Khalid0Amjed Ahmed Al-Kadhimi1Manmeet Mahinderjit Singh2School of Information Science, Japan Advanced Institute of Science and Technology, 1-1 Asahidai, Nomi 923-1211, JapanSchool of Computer Sciences, Universiti Sains Malaysia, Georgetown 11800, MalaysiaSchool of Computer Sciences, Universiti Sains Malaysia, Georgetown 11800, MalaysiaCybersecurity has become a prominent issue in regard to ensuring information privacy and integrity in the internet age particularly with the rise of interconnected devices. However, advanced persistent threats (APTs) pose a significant danger to the current contemporary way of life, and effective APT detection and defense are vital. Game theory is one of the most sought-after approaches adopted against APTs, providing a framework for understanding and analyzing the strategic interactions between attackers and defenders. However, what are the most recent developments in game theory frameworks against APTs, and what approaches and contexts are applied in game theory frameworks to address APTs? In this systematic literature review, 48 articles published between 2017 and 2022 in various journals were extracted and analyzed according to PRISMA procedures and our formulated research questions. This review found that game-theory approaches have been optimized for the defensive performance of security measures and implemented to anticipate and prepare for countermeasures. Many have been designed as part of incentive-compatible and welfare-maximizing contracts and then applied to cyber–physical systems, social networks, and transportation systems, among others. The trends indicate that game theory provides the means to analyze and understand complex security scenarios based on technological advances, changes in the threat landscape, and the emergence of new trends in cyber-crime. In this study, new opportunities and challenges against APTs are outlined, such as the ways in which tactics and techniques to bypass defenses are likely to evolve in order to evade detection, and we focused on specific industries and sectors of high interest or value (e.g., healthcare, finance, critical infrastructure, and the government).https://www.mdpi.com/2227-7390/11/6/1353cybersecurityattacksbehaviornetwork securitymobilesmartphone
spellingShingle Mohd Nor Akmal Khalid
Amjed Ahmed Al-Kadhimi
Manmeet Mahinderjit Singh
Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
Mathematics
cybersecurity
attacks
behavior
network security
mobile
smartphone
title Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
title_full Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
title_fullStr Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
title_full_unstemmed Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
title_short Recent Developments in Game-Theory Approaches for the Detection and Defense against Advanced Persistent Threats (APTs): A Systematic Review
title_sort recent developments in game theory approaches for the detection and defense against advanced persistent threats apts a systematic review
topic cybersecurity
attacks
behavior
network security
mobile
smartphone
url https://www.mdpi.com/2227-7390/11/6/1353
work_keys_str_mv AT mohdnorakmalkhalid recentdevelopmentsingametheoryapproachesforthedetectionanddefenseagainstadvancedpersistentthreatsaptsasystematicreview
AT amjedahmedalkadhimi recentdevelopmentsingametheoryapproachesforthedetectionanddefenseagainstadvancedpersistentthreatsaptsasystematicreview
AT manmeetmahinderjitsingh recentdevelopmentsingametheoryapproachesforthedetectionanddefenseagainstadvancedpersistentthreatsaptsasystematicreview