Within recent times, cybercriminals have curated a variety of organised and resolute cyber attacks within a range of cyber systems, leading to consequential ramifications to private and governmental institutions. Current security-based automation and orchestrations focus on automating fixed purpose and hard-coded solutions, which are easily surpassed by modern-day cyber attacks. Research within Automated Cyber Defence will allow the development and enabling intelligence response by autonomously defending networked systems through sequential decision-making agents. This article comprehensively elaborates the developments within Automated Cyber Defence through a requirement analysis divided into two sub-areas, namely, automated defence and attack agents and Autonomous Cyber Operation (ACO) Gyms. The requirement analysis allows the comparison of automated agents and highlights the importance of ACO Gyms for their continual development. The requirement analysis is also used to critique ACO Gyms with an overall aim to develop them for deploying automated agents within real-world networked systems. Relevant future challenges were addressed from the overall analysis to accelerate development within the area of Automated Cyber Defence.
翻译:近期内,网络犯罪分子在一系列网络系统内策划了一系列有组织的、坚决的网络攻击,对私营和政府机构产生了间接的影响。当前以安全为基础的自动化和管弦化侧重于固定用途和硬编码解决办法的自动化,这些办法很容易被现代网络攻击所超越。自动化网络防御内部的研究将使自动防御网络防御系统能够通过顺序决策代理进行自主防御,从而发展和促成情报反应。本文章全面阐述了自动化网络防御系统内部的发展动态,分析分为两个子领域,即自动防御和攻击代理以及自动网络行动。需求分析使得能够比较自动化代理物,并突出ACO Gyms对其持续发展的重要性。需求分析还用于批评ACO Gyms,其总体目标是开发ACO Gyms,用于在实际网络防御系统内部署自动代理物。从全面分析到加速自动化网络防御领域的发展,应对了今后的相关挑战。</s>