首页> 外文会议>International Conference on Active Media Technology >SPTrack: Visual Analysis of Information Flows within SELinux Policies and Attack Logs
【24h】

SPTrack: Visual Analysis of Information Flows within SELinux Policies and Attack Logs

机译:SPTRACK:SELINUX策略中信息流的视觉分析和攻击日志

获取原文

摘要

Analyzing and administrating system security policies is difficult as policies become larger and more complex every day. The paper present work toward analyzing security policies and sessions in terms of security properties. Our intuition was that combining both visualization tools that could benefit from the expert's eyes, and software analysis abilities, should lead to a new interesting way to study and manage security policies as well as users' sessions. Rather than trying to mine large and complex policies to find possible flaws within, work may concentrate on which potential flaws are really exploited by attackers. Actually, the paper presents some methods and tools to visualize and manipulate large SELinux policies, with algorithms allowing to search for paths, such as information flows within policies. The paper also introduces a complementary original approach to analyze and visualize real attack logs as session graphs or information flow graphs, or even aggregated multiple-sessions graphs. Our wishes is that in the future, when those tools will be mature enough, security administrator can then confront the statical security view given by the security policy analysis and the dynamical and real-world view given by the parts of attacks that most often occurred.
机译:分析与管理系统的安全策略是困难的,因为政策变得天天更大,更复杂。本论文工作对安全性能方面分析安全策略和会话。我们的直觉是,既相结合的可视化工具,可以从专家的眼睛,软件分析能力中受益,应该导致一个新的有趣的方式来学习,以及用户的会话管理安全策略。而不是试图去矿大和复杂的政策来寻找内可能出现的瑕疵,工作可能集中在哪些潜在的缺陷是不是真正的攻击者利用。其实,提出了一些方法和工具,以可视化和处理大量的SELinux政策,允许算法搜索路径,如信息政策范围内流动。文中还介绍了一种互补原始的方法来分析和可视化真正的攻击日志,会议图表或信息流图,甚至聚合多会话图形。我们的愿望是,在将来,当这些工具将足够成熟,安全管理员可以在对抗安全策略分析和的最经常发生袭击的部分给出的动态和现实世界的观点给出的静安全观。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号