Resumen: This paper aims to analyze transient security and dependability of a vulnerable critical system, under vulnerability-related attack and two reactive defense strategies, from a severe vulnerability announcement until the vulnerability is fully removed from the system. By severe, we mean that the vulnerability-based malware could cause significant damage to the infected system in terms of security and dependability while infecting more and more new vulnerable computer systems. We propose a Markov chain-based survivability model for capturing the vulnerable critical system behaviors during the vulnerability elimination process. A high-level formalism based on Stochastic Reward Nets is applied to automatically generate and solve the survivability model. Survivability metrics are defined to quantify system attributes. The proposed model and metrics not only enable us to quantitatively assess the system survivability in terms of security risk and dependability, but also provide insights on the system investment decision. Numerical experiments are constructed to study the impact of key parameters on system security, dependability and profit.
Idioma: Inglés
DOI: 10.1109/ICCCN.2018.8487446
Año: 2018
Publicado en: Proceedings - International Conference on Computer Communications and Networks, ICCCN 2018-July (2018), [6 pp]
ISSN: 1095-2055

Factor impacto SCIMAGO: 0.233 - Computer Networks and Communications - Software - Hardware and Architecture

Financiación: info:eu-repo/grantAgreement/ES/MINECO/TIN2014-58457-R
Tipo y forma: Artículo (PostPrint)

Derechos Reservados Derechos reservados por el editor de la revista


0
Exportado de SIDERAL (2020-01-17-21:56:52)

Este artículo se encuentra en las siguientes colecciones:
Artículos

Visitas


 Registro creado el 2019-10-25, última modificación el 2020-01-17


Postprint:
 PDF
Valore este documento:

Rate this document:
1
2
3
 
(Sin ninguna reseña)