首页> 外文会议>2013 IEEE 10th International Conference on e-Business Engineering >A Novel Threat and Risk Assessment Mechanism for Security Controls in Service Management
【24h】

A Novel Threat and Risk Assessment Mechanism for Security Controls in Service Management

机译:服务管理中安全控制的新型威胁和风险评估机制

获取原文
获取原文并翻译 | 示例

摘要

Most existing Threat and Risk Assessment (TRA) schemes for cloud services use a converse thinking approach to develop theoretical solutions for minimizing the risk of security breeches at a minimal cost. However, to support rational management decisions, TRA schemes require a careful analysis of the trade-off between the residual risk and the Return on Investment (ROI) given prescribed budget and time constraints. Accordingly, the present study proposes an improved Attack-Defense Tree mechanism designated as iADTree, for solving the TRA problem in cloud computing environments. The proposed scheme enables defenders to identify appropriate countermeasures in accordance with three different defensive strategies associated with the organization's security policy. In implementing the proposed scheme, a sandbox technique is used to examine the attack profile and attack probability of various forms of cyber attacks. The cost and residual risk of various defensive strategies are then evaluated and presented to the defender as a set of recommendations. Defense evaluation metrics for each node for probabilistic analysis is used to simulate the attack results. The simulations focus specifically on the attack profile of botnet to the threat risk assessment. The validity of the proposed approach is demonstrated by simulating the TRA process for a Zeus botnet attack. Overall, the results show that iADTree provides an effective means of modeling the interaction process between the attacker and the defender, analyzing the risk at each node of the tree given various defensive strategies, and developing cost-effective countermeasures for mitigating the network threat.
机译:现有的大多数针对云服务的威胁与风险评估(TRA)方案都使用逆向思维方法来开发理论解决方案,以最小的成本将安全风险的风险降至最低。但是,为了支持合理的管理决策,TRA计划要求在规定的预算和时间限制下,仔细分析残留风险与投资回报(ROI)之间的权衡。因此,本研究提出了一种改进的攻击防御树机制,称为iADTree,用于解决云计算环境中的TRA问题。提议的方案使防御者能够根据与组织的安全策略相关的三种不同防御策略,确定适当的对策。在实施所提出的方案时,使用沙盒技术来检查各种形式的网络攻击的攻击概况和攻击概率。然后评估各种防御策略的成本和剩余风险,并将其作为一组建议提供给防御者。用于概率分析的每个节点的防御评估指标用于模拟攻击结果。模拟专门针对僵尸网络针对威胁风险评估的攻击概况。通过模拟Zeus僵尸网络攻击的TRA过程,证明了所提出方法的有效性。总体而言,结果表明,iADTree提供了一种有效的方式,可以对攻击者与防御者之间的交互过程进行建模,在给定各种防御策略的情况下分析树的每个节点处的风险以及制定经济有效的缓解网络威胁的对策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号