首页> 外文期刊>Decision support systems >An approach to finding the cost-effective immunization targets for information assurance
【24h】

An approach to finding the cost-effective immunization targets for information assurance

机译:寻找具有成本效益的免疫目标以确保信息安全的方法

获取原文
获取原文并翻译 | 示例
       

摘要

Information assurance is increasing in importance as threats abound in the highly connected world of e-business. For enterprises, the goal is to achieve a secure information environment in a cost-effective manner. This paper focuses on the issue of how to cost-effectively immunize an enterprise's network to prevent threats (e.g., virus, rumor) from invading and spreading. An approach, namely Cost-Effective Immunization Targets (CEIT) is proposed as a means to identify the cost-effective immunization targets and provide direct cost/benefit trade-off solutions for practitioners. In the approach, a novel concept, savability, is introduced as an extension of return on security investment (ROSI), with the reduced expected infection probability as mitigated risks through immunization. Meanwhile, a bond percolation process, which can be done in just a single graph traversal, is incorporated to simplify the estimation of expected infection probability in place of repeated diffusion simulations. Theoretical analysis proves that the proposed approach can approximate the optimal solutions within a definite lower bound. Finally, experiments on real-world information network datasets reveal that the algorithm CEIT outperforms other immunization strategies in both homogeneous and heterogeneous cost cases. Further, a case study indicates that the CEIT-identified immunization targets are more likely to 'save' the important nodes with high potential infection loss, avoiding redundant immunization.
机译:随着高度连接的电子商务世界中的威胁比比皆是,信息保证的重要性日益提高。对于企业而言,目标是以经济高效的方式实现安全的信息环境。本文着重于如何经济有效地对企业网络进行免疫以防止威胁(例如病毒,谣言)入侵和传播的问题。提出了一种方法,即具有成本效益的免疫目标(CEIT),作为一种确定具有成本效益的免疫目标并为从业人员提供直接的成本/收益权衡解决方案的方法。在该方法中,引入了一种新概念,即可扩展性,作为安全性投资回报(ROSI)的扩展,具有降低的预期感染概率,可以通过免疫降低风险。同时,结合渗透渗滤过程(可以在单个图遍历中完成)来代替重复扩散模拟,以简化对预期感染概率的估计。理论分析证明,该方法可以在一定的下界内逼近最优解。最后,对真实世界信息网络数据集的实验表明,在均质和异质成本情况下,CEIT算法均优于其他免疫策略。此外,案例研究表明,CEIT确定的免疫目标更有可能“保存”具有高潜在感染损失的重要结节,从而避免了重复免疫。

著录项

  • 来源
    《Decision support systems》 |2014年第11期|40-52|共13页
  • 作者单位

    Department of Management Science and Engineering, School of Economics and Management, Tsinghua University, Beijing 100084, China;

    Department of Management Science and Engineering, School of Business, Renmin University of China, Beijing 100872, China;

    Department of Management Science and Engineering, School of Economics and Management, Tsinghua University, Beijing 100084, China;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Information assurance; Network immunization; Savability; Cost-effective immunization targets (CEIT);

    机译:信息保证;网络免疫;实用性;具有成本效益的免疫目标(CEIT);

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号