首页> 外文会议>Computer Security Applications Conference >Multi-Version Attack Recovery for Workflow Systems
【24h】

Multi-Version Attack Recovery for Workflow Systems

机译:工作流系统的多版攻击恢复

获取原文

摘要

Workflow systems are popular in daily business processing. Since vulnerabilities cannot be totally removed from a system, recovery from successful attacks is unavoidable. In this paper, we focus on attacks that inject malicious tasks into workflow management systems. We introduce practical techniques for on-line attack recovery, which include rules for locating damage and rules for execution order. In our system, an independent Intrusion Detection System reports identified malicious tasks periodically. The recovery system detects all damage caused by the malicious tasks and automatically repairs the damage according to dependency relations. Without multiple versions of data objects, recovery tasks may be corrupted by executing normal tasks when we try to run damage analysis and normal tasks concurrently. This paper addresses the problem by introducing multi-version data objects to reduce unnecessary blocking of normal task execution and improve the performance of the whole system. We analyze the integrity level and performance of our system. The analytic results demonstrate guidelines for designing such kinds of systems.
机译:工作流系统在日常业务处理中受欢迎。由于漏洞无法完全从系统中删除,因此从成功攻击中恢复是不可避免的。在本文中,我们专注于将恶意任务注入工作流管理系统的攻击。我们引入了用于在线攻击恢复的实用技术,包括用于定位损坏和执行顺序规则的规则。在我们的系统中,一个独立的入侵检测系统报告定期识别恶意任务。恢复系统检测由恶意任务引起的所有损坏,并根据依赖关系自动修复损坏。如果没有多个版本的数据对象,当我们尝试同时运行损坏分析和正常任务时,恢复任务可能会通过执行正常任务而损坏。本文通过引入多版本数据对象来解决问题,以减少对正常任务执行的不必要阻止并提高整个系统的性能。我们分析了我们系统的完整性水平和性能。分析结果证明了设计这些类型的系统的指导。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号