Web services and grid security vulnerabilities and threats analysis and model.

被引:0
|
作者
Demchenko, Y [1 ]
Gommans, L [1 ]
de Laat, C [1 ]
Oudenaarde, B [1 ]
机构
[1] Univ Amsterdam, Adv Internet Res Grp, NL-1098 SJ Amsterdam, Netherlands
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The paper provides an overview of available Web Services security vulnerability models and proposes a classification of the potential Grid and Web Services attacks and vulnerabilities. This is further used to introduce a security model for interacting Grid and Web Services that illustrates how basic security services should interact to provide an attack-resilient multilayer protection in a typical service-oriented architecture. The analysis and the model can be used as a basis for developing countermeasures against known vulnerabilities and security services design recommendations. The paper refers to the ongoing work on middleware and operational security in the framework of the European Grid infrastructure deployment project EGEE and related coordination groups.
引用
收藏
页码:262 / 267
页数:6
相关论文
共 50 条
  • [1] Threats analysis and prevention for Grid and Web service security
    Ni Jiancheng
    Li Zhishu
    Gao Zhonghe
    Sun Jirong
    SNPD 2007: EIGHTH ACIS INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ARTIFICIAL INTELLIGENCE, NETWORKING, AND PARALLEL/DISTRIBUTED COMPUTING, VOL 3, PROCEEDINGS, 2007, : 526 - +
  • [2] Security of Web Applications: Threats, Vulnerabilities, and Protection Methods
    Mohammed, Asma
    Alkhathami, Jamilah
    Alsuwat, Hatim
    Alsuwat, Emad
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2021, 21 (08): : 167 - 176
  • [3] Analysis of Models of Security to Mitigate the Risks, Vulnerabilities and Threats in a Company of Services of Telecommunications
    Toapanta Toapanta, Segundo Moises
    Mafla Gallegos, Luis Enrique
    Chevez Moran, Maria Jose
    Ortiz Rojas, Javier Gonzalo
    2020 3RD INTERNATIONAL CONFERENCE ON INFORMATION AND COMPUTER TECHNOLOGIES (ICICT 2020), 2020, : 445 - 450
  • [4] Physical Layer Security for the Smart Grid: Vulnerabilities, Threats, and Countermeasures
    Islam, Shama Naz
    Baig, Zubair
    Zeadally, Sherali
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2019, 15 (12) : 6522 - 6530
  • [5] Web Users' Knowledge and Their Behavior towards Security Threats and Vulnerabilities
    Aldossary, Alia A.
    Zeki, Akram M.
    2015 4TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER SCIENCE APPLICATIONS AND TECHNOLOGIES (ACSAT), 2015, : 256 - 260
  • [6] Automation of Detection of Security Vulnerabilities in Web Services using Dynamic Analysis
    Kumar, Rahul
    Indraveni, K.
    Goel, Aakash Kumar
    2014 9TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2014, : 334 - 336
  • [7] Web Service security -: Vulnerabilities and threats within the context of WS-security
    Holgersson, J
    Söderström, E
    PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON STANDARDIZATION AND INNOVATION IN INFORMATION TECHNOLOGY, 2005, : 147 - 155
  • [8] Using Web Security Scanners to Detect Vulnerabilities in Web Services
    Vieira, Marco
    Antunes, Nuno
    Madeira, Henrique
    2009 IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS & NETWORKS (DSN 2009), 2009, : 566 - 571
  • [9] An analysis of the Security Threats and Vulnerabilities of Cloud Computing in Oman
    AlZadjali, Amira M.
    Al-Badi, Ali H.
    Ali, Saqib
    2015 INTERNATIONAL CONFERENCE ON INTELLIGENT NETWORKING AND COLLABORATIVE SYSTEMS IEEE INCOS 2015, 2015, : 423 - 428
  • [10] Security analysis of vulnerabilities and threats for medical information systems
    Ju, Tea Kyung
    Hong, Chong Min
    Shin, Weon
    ICIC Express Letters, 2015, 9 (03): : 849 - 854