Detecting intrusions specified in a software specification language

被引:0
|
作者
Raihan, MF [1 ]
Zulkernine, M [1 ]
机构
[1] Queens Univ, Sch Comp, Kingston, ON K7L 3N6, Canada
来源
Proceedings of the 29th Annual International Computer Software and Applications Conference | 2005年
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
To protect software against malicious activities, organizations are required to monitor security breaches. Intrusion Detection Systems (IDS) are those kinds of monitoring tools that have gained a considerable amount of popularity. A number of specification-based IDSs have been proposed, where security requirements or attack scenarios are specified using some languages. Currently, attack specification languages are being deployed for describing security requirements. Use of two different languages for software specification and security specification invites a number Of unwanted but complicated issues, such as duplication of requirements specification effort as well as the existence Of redundant and conflicting requirements. In this paper, we present an intrusion detection technique that uses a formal software specification language called Abstract State Machine Language (AsmL) for the specification of security requirements. We present a framework, and develop the algorithm for the IDS that interprets the AsmL attack scenario specifications in order to detect intrusions. Moreover, we discuss case studies where the presented intrusion detection system is used to detect attacks.
引用
收藏
页码:143 / 148
页数:6
相关论文
共 50 条
  • [1] Detecting defects in software requirements specification
    Alshazly, Amira A.
    Elfatatry, Ahmed M.
    Abougabal, Mohamed S.
    ALEXANDRIA ENGINEERING JOURNAL, 2014, 53 (03) : 513 - 527
  • [2] Detecting and countering system intrusions using software wrappers
    Ko, C
    Fraser, T
    Badger, L
    Kilpatrick, D
    USENIX ASSOCIATION PROCEEDINGS OF THE NINTH USENIX SECURITY SYMPOSIUM, 2000, : 145 - 156
  • [3] GSPEC: A GRAPHICAL SPECIFICATION LANGUAGE FOR SOFTWARE
    戴敏
    徐家福
    ScienceinChina,SerA., 1989, Ser.A.1989 (10) : 1260 - 1269
  • [4] GSPEC: A GRAPHICAL SPECIFICATION LANGUAGE FOR SOFTWARE
    戴敏
    徐家福
    Science China Mathematics, 1989, (10) : 1260 - 1269
  • [5] GSPEC - A GRAPHICAL SPECIFICATION LANGUAGE FOR SOFTWARE
    DAI, M
    XU, JF
    SCIENCE IN CHINA SERIES A-MATHEMATICS PHYSICS ASTRONOMY, 1989, 32 (10): : 1260 - 1269
  • [6] SOFTWARE SPECIFICATION USING THE SPECIAL LANGUAGE
    CHANDERSEKARAN, CS
    LINGER, RC
    JOURNAL OF SYSTEMS AND SOFTWARE, 1981, 2 (01) : 31 - 38
  • [7] Detecting conflicts in the integration of CSCW software modules specified in LOTOS
    Mak, WM
    Cheung, TY
    PROCEEDINGS OF SECOND INTERNATIONAL WORKSHOP ON CSCW IN DESIGN, 1997, : 326 - 331
  • [8] Object-oriented software specification language
    Quan, Bingzhe
    Jin, Chunzhao
    Ruan Jian Xue Bao/Journal of Software, 1995, 6 (12):
  • [9] MULTIPLE VIEWS OF AN EXECUTABLE SOFTWARE SPECIFICATION LANGUAGE
    TUNG, Y
    KHWAJA, AA
    URBAN, JE
    JOURNAL OF SYSTEMS AND SOFTWARE, 1993, 21 (03) : 305 - 319
  • [10] An XML definition language for software system specification
    Della Penna, G
    Intrigila, B
    Laurenzi, AR
    Orefice, S
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL I, PROCEEDINGS: INFORMATION SYSTEMS DEVELOPMENT I, 2002, : 311 - 315