首页> 外文会议>Internet Monitoring and Protection, 2009. ICIMP '09 >Fuzzy Heuristic Design for Diagnosis of Web-Based Vulnerabilities
【24h】

Fuzzy Heuristic Design for Diagnosis of Web-Based Vulnerabilities

机译:基于Web的漏洞诊断的模糊启发式设计

获取原文

摘要

The common vulnerability scoring system (CVSS) provides an open, standardized method for rating vulnerabilities. CVSS provides base-level metrics for vulnerability classification that can be used with other strategies such as intrusion detection classification to form a complete diagnostic system. This emphasizes focus on defining and representing the various strategies that can be employed to provide a formal and more practical approach to vulnerabilities assessment. The various parameters that are defined have been derived from a set of five assertions and the initial fuzzy scanner metrics (the pre-defined scanner parameters). The fuzziness of the scanner metrics allows for a greater manipulation of results before a complete diagnosis can be presented. The confidence reports (1st and 2nd degree) could be used to provide information aiding the initiation of suitable steps to be taken.
机译:通用漏洞评分系统(CVSS)提供了一种开放的,标准化的漏洞评分方法。 CVSS为漏洞分类提供了基本级别的度量标准,可与其他策略(例如入侵检测分类)一起使用以形成完整的诊断系统。这重点在于定义和表示可以用来提供正式和更实际的漏洞评估方法的各种策略。定义的各种参数已从一组五个断言和初始模糊扫描仪指标(预定义的扫描仪参数)中得出。扫描仪指标的模糊性允许在可以提出完整诊断之前对结果进行更大的处理。置信度报告(第1和第2级)可用于提供信息,以帮助开始采取适当的措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号