首页> 外文会议>IEEE Systems and Information Engineering Design Symposium >Risk-based model for tracking complexity in system vulnerability analysis
【24h】

Risk-based model for tracking complexity in system vulnerability analysis

机译:追踪系统漏洞分析中复杂性的基于风险模型

获取原文

摘要

We describe a method for tracking model complexity in system vulnerability analysis. The method builds on the collection of risk scenarios describing known vulnerabilities of systems and system components. We introduce the concept of an interaction as a mapping between a risk scenario and one or more system components. An interaction is direct when the mapping is obvious. An interaction is indirect when the mapping can make use of nonobvious relationships among system components. Indirect interactions characterize the rippling effects of a risk scenario and are used to identify the nonobvious interdependencies. With the above foundation, the method extends traditional process control charts to track evolving knowledge of scenarios and systems. The charts signal the emergence of anomalous variation in emerging knowledge of system vulnerability. The method is applied iteratively to avoid situations of surprise in an emerging model (scenarios and systems) of system vulnerability. An application of the method is discussed.
机译:我们描述了一种在系统漏洞分析中跟踪模型复杂性的方法。该方法构建了描述了描述系统和系统组件的已知漏洞的风险方案集合。我们将交互的概念介绍为风险场景和一个或多个系统组件之间的映射。当映射显而易见时,交互是直接的。当映射可以利用系统组件之间的非合适关系时,交互是间接的。间接交互表征风险场景的波纹效果,并用于识别非吸收的相互依赖性。通过上面的基础,该方法扩展了传统的过程控制图表,以跟踪方案和系统的不断发展。图表表示系统脆弱性新知识中异常变化的出现。该方法是迭代地应用,以避免系统漏洞的新出现模型(方案和系统)中出现惊喜的情况。讨论了该方法的应用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号