A Survey of Interdependent Information Security Games

Published: 29 August 2014 Publication History


Risks faced by information system operators and users are not only determined by their own security posture, but are also heavily affected by the security-related decisions of others. This interdependence between information system operators and users is a fundamental property that shapes the efficiency of security defense solutions. Game theory is the most appropriate method to model the strategic interactions between these participants. In this survey, we summarize game-theoretic interdependence models, characterize the emerging security inefficiencies, and present mechanisms to improve the security decisions of the participants. We focus our attention on games with interdependent defenders and do not discuss two-player attacker-defender games. Our goal is to distill the main insights from the state of the art and to identify the areas that need more attention from the research community.


      Information & Contributors


      Published In

      ACM Computing Surveys  Volume 47, Issue 2
      January 2015
      Publication History

      Published: 29 August 2014
      Accepted: 01 June 2014
      Revised: 01 April 2014
      Received: 01 November 2012
      Published in CSUR Volume 47, Issue 2


      Author Tags

      1. Interdependent security
      2. externality
      3. security economics
      4. security games


      Funding Sources

      • Bolyai Janos Research Fellowship Nr: BO/00273/12


