{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,28]],"date-time":"2026-02-28T18:00:17Z","timestamp":1772301617851,"version":"3.50.1"},"publisher-location":"Cham","reference-count":36,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319255934","type":"print"},{"value":"9783319255941","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-319-25594-1_4","type":"book-chapter","created":{"date-parts":[[2015,11,10]],"date-time":"2015-11-10T21:03:13Z","timestamp":1447189393000},"page":"57-73","source":"Crossref","is-referenced-by-count":9,"title":["Games of Timing for Security in Dynamic Environments"],"prefix":"10.1007","author":[{"given":"Benjamin","family":"Johnson","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Aron","family":"Laszka","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jens","family":"Grossklags","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,11,12]]},"reference":[{"key":"4_CR1","unstructured":"Blackwell, D.: The noisy duel, one bullet each, arbitrary accuracy. Technical report, The RAND Corporation, D-442 (1949)"},{"key":"4_CR2","unstructured":"B\u00f6hme, R., Schwartz, G.: Modeling cyber-insurance: towards a unifying framework. In: 9th Workshop on the Economics of Information Security (WEIS) (2010)"},{"key":"4_CR3","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"248","DOI":"10.1007\/978-3-642-34266-0_15","volume-title":"Decision and Game Theory for Security","author":"KD Bowers","year":"2012","unstructured":"Bowers, K.D., van Dijk, M., Griffin, R., Juels, A., Oprea, A., Rivest, R.L., Triandopoulos, N.: Defending against the unknown enemy: applying FlipIt to system security. In: Grossklags, J., Walrand, J. (eds.) GameSec 2012. LNCS, vol. 7638, pp. 248\u2013263. Springer, Heidelberg (2012)"},{"issue":"2","key":"4_CR4","doi-asserted-by":"crossref","first-page":"397","DOI":"10.2307\/23044049","volume":"35","author":"P Chen","year":"2011","unstructured":"Chen, P., Kataria, G., Krishnan, R.: Correlated failures, diversification, and information security risk management. MIS Q. 35(2), 397\u2013422 (2011)","journal-title":"MIS Q."},{"key":"4_CR5","unstructured":"Feng, X., Zheng, Z., Hu, P., Cansever, D., Mohapatra, P.: Stealthy attacks meets insider threats: a three-player game model. Technical report"},{"key":"4_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"167","DOI":"10.1007\/978-3-642-03549-4_10","volume-title":"Financial Cryptography and Data Security","author":"N Fultz","year":"2009","unstructured":"Fultz, N., Grossklags, J.: Blue versus red: towards a model of distributed security attacks. In: Dingledine, R., Golle, P. (eds.) FC 2009. LNCS, vol. 5628, pp. 167\u2013183. Springer, Heidelberg (2009)"},{"issue":"4","key":"4_CR7","doi-asserted-by":"publisher","first-page":"438","DOI":"10.1145\/581271.581274","volume":"5","author":"L Gordon","year":"2002","unstructured":"Gordon, L., Loeb, M.: The economics of information security investment. ACM Trans. Inf. Syst. Secur. 5(4), 438\u2013457 (2002)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"key":"4_CR8","doi-asserted-by":"crossref","unstructured":"Grossklags, J., Christin, N., Chuang, J.: Secure or insure?: a game-theoretic analysis of information security games. In: Proceedings of the 17th International World Wide Web Conference, pp. 209\u2013218 (2008)","DOI":"10.1145\/1367497.1367526"},{"key":"4_CR9","doi-asserted-by":"crossref","unstructured":"Grossklags, J., Reitter, D.: How task familiarity and cognitive predispositions impact behavior in a security game of timing. In: Proceedings of the 27th IEEE Computer Security Foundations Symposium (CSF), pp. 111\u2013122 (2014)","DOI":"10.1109\/CSF.2014.16"},{"key":"4_CR10","doi-asserted-by":"crossref","unstructured":"Hu, P., Li, H., Fu, H., Cansever, D., Mohapatra, P.: Dynamic defense strategy against advanced persistent threat with insiders. In: Proceedings of the 34th IEEE International Conference on Computer Communications (INFOCOM) (2015)","DOI":"10.1109\/INFOCOM.2015.7218444"},{"key":"4_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"148","DOI":"10.1007\/978-3-642-03549-4_9","volume-title":"Financial Cryptography and Data Security","author":"C Ioannidis","year":"2009","unstructured":"Ioannidis, C., Pym, D., Williams, J.: Investments and trade-offs in the economics of information security. In: Dingledine, R., Golle, P. (eds.) FC 2009. LNCS, vol. 5628, pp. 148\u2013166. Springer, Heidelberg (2009)"},{"key":"4_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"117","DOI":"10.1007\/978-3-642-25280-8_11","volume-title":"Decision and Game Theory for Security","author":"B Johnson","year":"2011","unstructured":"Johnson, B., B\u00f6hme, R., Grossklags, J.: Security games with market insurance. In: Baras, J.S., Katz, J., Altman, E. (eds.) GameSec 2011. LNCS, vol. 7037, pp. 117\u2013130. Springer, Heidelberg (2011)"},{"key":"4_CR13","doi-asserted-by":"crossref","unstructured":"Johnson, B., Laszka, A., Grossklags, J.: The complexity of estimating systematic risk in networks. In: Proceedings of the 27th IEEE Computer Security Foundations Symposium (CSF), pp. 325\u2013336 (2014)","DOI":"10.1109\/CSF.2014.30"},{"issue":"2","key":"4_CR14","doi-asserted-by":"publisher","first-page":"231","DOI":"10.1023\/A:1024119208153","volume":"26","author":"H Kunreuther","year":"2003","unstructured":"Kunreuther, H., Heal, G.: Interdependent security. J. Risk Uncertain. 26(2), 231\u2013249 (2003)","journal-title":"J. Risk Uncertain."},{"issue":"2","key":"4_CR15","doi-asserted-by":"publisher","first-page":"23:1","DOI":"10.1145\/2635673","volume":"47","author":"A Laszka","year":"2014","unstructured":"Laszka, A., Felegyhazi, M., Buttyan, L.: A survey of interdependent information security games. ACM Comput. Surv. 47(2), 23:1\u201323:38 (2014)","journal-title":"ACM Comput. Surv."},{"key":"4_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"175","DOI":"10.1007\/978-3-319-12601-2_10","volume-title":"Decision and Game Theory for Security","author":"A Laszka","year":"2014","unstructured":"Laszka, A., Horvath, G., Felegyhazi, M., Butty\u00e1n, L.: FlipThem: modeling targeted attacks with flipit for multiple resources. In: Poovendran, R., Saad, W. (eds.) GameSec 2014. LNCS, vol. 8840, pp. 175\u2013194. Springer, Heidelberg (2014)"},{"key":"4_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"319","DOI":"10.1007\/978-3-642-45046-4_26","volume-title":"Web and Internet Economics","author":"A Laszka","year":"2013","unstructured":"Laszka, A., Johnson, B., Grossklags, J.: Mitigating covert compromises. In: Chen, Y., Immorlica, N. (eds.) WINE 2013. LNCS, vol. 8289, pp. 319\u2013332. Springer, Heidelberg (2013)"},{"key":"4_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"175","DOI":"10.1007\/978-3-319-02786-9_11","volume-title":"Decision and Game Theory for Security","author":"A Laszka","year":"2013","unstructured":"Laszka, A., Johnson, B., Grossklags, J.: Mitigation of targeted and non-targeted covert attacks as a timing game. In: Das, S.K., Nita-Rotaru, C., Kantarcioglu, M. (eds.) GameSec 2013. LNCS, vol. 8252, pp. 175\u2013191. Springer, Heidelberg (2013)"},{"key":"4_CR19","doi-asserted-by":"crossref","unstructured":"Lelarge, M., Bolot, J.: Economic incentives to increase security in the internet: the case for insurance. In: Proceedings of the 33rd IEEE International Conference on Computer Communications (INFOCOM), pp. 1494\u20131502 (2009)","DOI":"10.1109\/INFCOM.2009.5062066"},{"issue":"3","key":"4_CR20","doi-asserted-by":"publisher","first-page":"25:1","DOI":"10.1145\/2480741.2480742","volume":"45","author":"M Manshaei","year":"2013","unstructured":"Manshaei, M., Zhu, Q., Alpcan, T., Bac\u015far, T., Hubaux, J.: Game theory meets network security and privacy. ACM Comput. Surv. 45(3), 25:1\u201325:39 (2013)","journal-title":"ACM Comput. Surv."},{"key":"4_CR21","unstructured":"Nochenson, A., Grossklags, J.: A behavioral investigation of the FlipIt game. In: 12th Workshop on the Economics of Information Security (WEIS) (2013)"},{"key":"4_CR22","unstructured":"Ozment, A.: The likelihood of vulnerability rediscovery and the social utility of vulnerability hunting. In: Proceedings of the 4th Workshop on the Economics of Information Security (WEIS) (2005)"},{"key":"4_CR23","unstructured":"Ozment, A., Schechter, S.: Milk or wine: does software security improve with age? In: Proceedings of the 15th USENIX Security Symposium (2006)"},{"key":"4_CR24","unstructured":"Pal, R., Huang, X., Zhang, Y., Natarajan, S., Hui, P.: On security monitoring in sdns: a strategic outlook"},{"key":"4_CR25","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"266","DOI":"10.1007\/978-3-319-12601-2_15","volume-title":"Decision and Game Theory for Security","author":"E Panaousis","year":"2014","unstructured":"Panaousis, E., Fielder, A., Malacaria, P., Hankin, C., Smeraldi, F.: Cybersecurity games and investments: a decision support approach. In: Poovendran, R., Saad, W. (eds.) GameSec 2014. LNCS, vol. 8840, pp. 266\u2013286. Springer, Heidelberg (2014)"},{"key":"4_CR26","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"234","DOI":"10.1007\/978-3-642-34266-0_14","volume-title":"Decision and Game Theory for Security","author":"V Pham","year":"2012","unstructured":"Pham, V., Cid, C.: Are we compromised? modelling security assessment games. In: Grossklags, J., Walrand, J. (eds.) GameSec 2012. LNCS, vol. 7638, pp. 234\u2013247. Springer, Heidelberg (2012)"},{"key":"4_CR27","doi-asserted-by":"crossref","unstructured":"Radzik, T.: Results and problems in games of timing. In: Lecture Notes-Monograph Series. Statistics, Probability and Game Theory: Papers in Honor of David Blackwell, vol. 30, pp. 269\u2013292 (1996)","DOI":"10.1214\/lnms\/1215453577"},{"key":"4_CR28","unstructured":"Reitter, D., Grossklags, J., Nochenson, A.: Risk-seeking in a continuous game of timing. In: Proceedings of the 13th International Conference on Cognitive Modeling (ICCM), pp. 397\u2013403 (2013)"},{"issue":"1","key":"4_CR29","doi-asserted-by":"publisher","first-page":"14","DOI":"10.1109\/MSP.2005.17","volume":"3","author":"E Rescorla","year":"2005","unstructured":"Rescorla, E.: Is finding security holes a good idea? IEEE Secur. Priv. 3(1), 14\u201319 (2005)","journal-title":"IEEE Secur. Priv."},{"key":"4_CR30","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"122","DOI":"10.1007\/978-3-540-45126-6_9","volume-title":"Financial Cryptography","author":"SE Schechter","year":"2003","unstructured":"Schechter, S.E., Smith, M.D.: How much security is enough to stop a thief? In: Wright, R.N. (ed.) FC 2003. LNCS, vol. 2742, pp. 122\u2013137. Springer, Heidelberg (2003)"},{"issue":"4","key":"4_CR31","doi-asserted-by":"publisher","first-page":"655","DOI":"10.1007\/s00145-012-9134-5","volume":"26","author":"M Dijk Van","year":"2013","unstructured":"Van Dijk, M., Juels, A., Oprea, A., Rivest, R.: Flipit: the game of \u201cstealthy takeover\u201d. J. Crypt. 26(4), 655\u2013713 (2013)","journal-title":"J. Crypt."},{"key":"4_CR32","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/1-4020-8090-5_1","volume-title":"Economics of Information Security","author":"H Varian","year":"2004","unstructured":"Varian, H.: System reliability and free riding. In: Camp, J., Lewis, S. (eds.) Economics of Information Security, pp. 1\u201315. Kluwer Academic Publishers, Dordrecht (2004)"},{"key":"4_CR33","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"43","DOI":"10.1007\/978-3-319-12601-2_3","volume-title":"Decision and Game Theory for Security","author":"MP Wellman","year":"2014","unstructured":"Wellman, M.P., Prakash, A.: Empirical game-theoretic analysis of an adaptive cyber-defense scenario (preliminary\u00a0report). In: Poovendran, R., Saad, W. (eds.) GameSec 2014. LNCS, vol. 8840, pp. 43\u201358. Springer, Heidelberg (2014)"},{"key":"4_CR34","doi-asserted-by":"crossref","unstructured":"Zhang, M., Zheng, Z., Shroff, N.: Stealthy attacks and observable defenses: a game theoretic model under strict resource constraints. In: Proceedings of the IEEE Global Conference on Signal and Information Processing (GlobalSIP), pp. 813\u2013817 (2014)","DOI":"10.1109\/GlobalSIP.2014.7032232"},{"key":"4_CR35","doi-asserted-by":"crossref","unstructured":"Zhao, M., Grossklags, J., Chen, K.: An exploratory study of white hat behaviors in a web vulnerability disclosure program. In: Proceedings of the ACM Workshop on Security Information Workers, pp. 51\u201358 (2014)","DOI":"10.1145\/2663887.2663906"},{"key":"4_CR36","doi-asserted-by":"crossref","unstructured":"Zhao, M., Grossklags, J., Liu, P.: An empirical study of web vulnerability discovery ecosystems. In: Proceedings of the 22nd ACM Conference on Computer and Communications Security (CCS) (2015)","DOI":"10.1145\/2810103.2813704"}],"container-title":["Lecture Notes in Computer Science","Decision and Game Theory for Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-25594-1_4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,31]],"date-time":"2019-05-31T10:00:38Z","timestamp":1559296838000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-25594-1_4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783319255934","9783319255941"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-25594-1_4","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2015]]}}}