Survivability Model for Security and Dependability Analysis of a Vulnerable Critical System

被引:0
|
作者
Chang, Xiaolin [1 ]
Lv, Shaohua [1 ]
Rodriguez, Ricardo J. [2 ]
Trivedi, Kishor [3 ]
机构
[1] Beijing Jiaotong Univ, Beijing Key Lab Secur & Privacy Intelligent Trans, Beijing, Peoples R China
[2] Acad Gen Mil, Ctr Univ Def, Zaragoza, Spain
[3] Duke Univ, Dept Elect & Comp Engn, Durham, NC 27706 USA
关键词
Reactive defense strategy; Quantitative analysis; Stochastic Reward Nets; Survivability; Security;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
This paper aims to analyze transient security and dependability of a vulnerable critical system, under vulnerability-related attack and two reactive defense strategies, from a severe vulnerability announcement until the vulnerability is fully removed from the system. By severe, we mean that the vulnerability-based malware could cause significant damage to the infected system in terms of security and dependability while infecting more and more new vulnerable computer systems. We propose a Markov chain-based survivability model for capturing the vulnerable critical system behaviors during the vulnerability elimination process. A high-level formalism based on Stochastic Reward Nets is applied to automatically generate and solve the survivability model. Survivability metrics are defined to quantify system attributes. The proposed model and metrics not only enable us to quantitatively assess the system survivability in terms of security risk and dependability, but also provide insights on the system investment decision. Numerical experiments are constructed to study the impact of key parameters on system security, dependability and profit.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Dependability and survivability of large complex critical infrastructures
    Bologna, S
    Balducelli, C
    Dipoppa, G
    Vicoli, G
    [J]. COMPUTER SAFETY, RELIABILITY, AND SECURITY, PROCEEDINGS, 2003, 2788 : 342 - 353
  • [2] A Comparative Analysis of Network Dependability, Fault-tolerance, Reliability, Security, and Survivability
    Al-Kuwaiti, M.
    Kyriakopoulos, N.
    Hussein, S.
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2009, 11 (02): : 106 - 124
  • [3] Network dependability, fault-tolerance, reliability, security, survivability: A framework for comparative analysis
    Al-Kuwaiti, M.
    Kyriakopoulos, N.
    Hussein, S.
    [J]. 2006 INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING & SYSTEMS, 2006, : 282 - +
  • [4] Critical service recovery model for system survivability
    Paputungan, Irving Vitra
    Abdullah, Azween
    Jung, Low Tan
    [J]. PROCEEDINGS OF THE 9TH WSEAS INTERNATIONAL CONFERENCE ON MATHEMATICAL AND COMPUTATIONAL METHODS IN SCIENCE AND ENGINEERING (MACMESE '07)/ DNCOCO '07, 2007, : 21 - 28
  • [5] Survivability model of network system and its survivability analysis
    Zhu, JM
    Ma, JF
    [J]. ISTM/2003: 5TH INTERNATIONAL SYMPOSIUM ON TEST AND MEASUREMENT, VOLS 1-6, CONFERENCE PROCEEDINGS, 2003, : 1037 - 1042
  • [6] Maximizing survivability of vulnerable weighted voting system
    Levitin, G
    [J]. RELIABILITY ENGINEERING & SYSTEM SAFETY, 2004, 83 (01) : 17 - 26
  • [7] Meeting the Challenges of Critical and Extreme Dependability and Security
    Esteves-Verissimo, Paulo
    Volp, Marcus
    Decouchant, Jeremie
    Rahli, Vincent
    Rocha, Francisco
    [J]. 2017 IEEE 22ND PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC 2017), 2017, : 92 - 97
  • [8] Infrastructure security: Reliability and dependability of critical systems
    Amin, M
    [J]. IEEE SECURITY & PRIVACY, 2005, 3 (03) : 15 - 17
  • [9] Security Analysis of the Dependability, Security Reconfigurability Framework
    Hartog, Tim
    Kleinhuis, Geert
    [J]. CRISIS: 2008 THIRD INTERNATIONAL CONFERENCE ON RISKS AND SECURITY OF INTERNET AND SYSTEMS, PROCEEDINGS, 2008, : 93 - +
  • [10] Modelling Security of Critical Infrastructures: A Survivability Assessment
    Rodriguez, Ricardo J.
    Merseguer, Jose
    Bernardi, Simona
    [J]. COMPUTER JOURNAL, 2015, 58 (10): : 2313 - 2327