Detecting intrusions specified in a software specification language

被引:0
|
作者
Raihan, MF [1 ]
Zulkernine, M [1 ]
机构
[1] Queens Univ, Sch Comp, Kingston, ON K7L 3N6, Canada
来源
Proceedings of the 29th Annual International Computer Software and Applications Conference | 2005年
关键词
D O I
暂无
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
To protect software against malicious activities, organizations are required to monitor security breaches. Intrusion Detection Systems (IDS) are those kinds of monitoring tools that have gained a considerable amount of popularity. A number of specification-based IDSs have been proposed, where security requirements or attack scenarios are specified using some languages. Currently, attack specification languages are being deployed for describing security requirements. Use of two different languages for software specification and security specification invites a number Of unwanted but complicated issues, such as duplication of requirements specification effort as well as the existence Of redundant and conflicting requirements. In this paper, we present an intrusion detection technique that uses a formal software specification language called Abstract State Machine Language (AsmL) for the specification of security requirements. We present a framework, and develop the algorithm for the IDS that interprets the AsmL attack scenario specifications in order to detect intrusions. Moreover, we discuss case studies where the presented intrusion detection system is used to detect attacks.
引用
收藏
页码:143 / 148
页数:6
相关论文
共 50 条
  • [41] Detecting known and novel network intrusions
    Bouzida, Yacine
    Cuppens, Frederic
    SECURITY AND PRIVACY IN DYNAMIC ENVIRONMENTS, 2006, 201 : 258 - +
  • [42] DIWeDa - Detecting intrusions in web databases
    Roichman, Alex
    Gudes, Ehud
    DATA AND APPLICATIONS SECURITY XXII, 2008, 5094 : 313 - +
  • [43] Detecting Wireless Intrusions With RF Watermarks
    Betances, J. Addison
    Matsui, Yousuke Z.
    PROCEEDINGS OF THE 2019 IEEE NATIONAL AEROSPACE AND ELECTRONICS CONFERENCE (NAECON), 2019, : 200 - 203
  • [44] Detecting Computer Intrusions with Bayesian Networks
    Tylman, Wojciech
    INTELLIGENT DATA ENGINEERING AND AUTOMATED LEARNING, PROCEEDINGS, 2009, 5788 : 82 - 91
  • [45] A LANGUAGE OF SPECIFIED PROGRAMS
    TARLECKI, A
    SCIENCE OF COMPUTER PROGRAMMING, 1985, 5 (01) : 59 - 81
  • [46] Formal engineering for industrial software development - An introduction to the SOFL specification language and method
    Liu, SY
    FORMAL METHODS AND SOFTWARE ENGINEERING, PROCEEDINGS, 2004, 3308 : 7 - 8
  • [47] Extracting concepts from the software requirements specification using natural language processing
    Kuchta, Jaroslaw
    Padhiyar, Priti
    2018 11TH INTERNATIONAL CONFERENCE ON HUMAN SYSTEM INTERACTION (HSI), 2018, : 443 - 448
  • [48] PARAMETER SPECIFICATION LANGUAGE AND TEST DATA GENERATION TOOLS FOR COMMUNICATION SOFTWARE TESTING
    SATO, F
    TSUJI, H
    KATSUYAMA, K
    MIZUNO, T
    IFIP TRANSACTIONS C-COMMUNICATION SYSTEMS, 1992, 3 : 207 - 218
  • [49] Specification of multimedia software systems using an object oriented architecture description language
    Xu, K
    Tsai, JJP
    INTERNATIONAL JOURNAL OF SOFTWARE ENGINEERING AND KNOWLEDGE ENGINEERING, 1999, 9 (06) : 767 - 800
  • [50] Languages for the specification of software
    Cooke, D
    Gates, A
    Demirors, E
    Demirors, O
    Tanik, MM
    Kramer, B
    JOURNAL OF SYSTEMS AND SOFTWARE, 1996, 32 (03) : 269 - 308