...
首页> 外文期刊>Advances in Science, Technology and Engineering Systems >Semantic-less Breach Detection of Polymorphic Malware in Federated Cloud
【24h】

Semantic-less Breach Detection of Polymorphic Malware in Federated Cloud

机译:联合云中多态恶意软件的无语义突破检测

获取原文
   

获取外文期刊封面封底 >>

       

摘要

Cloud computing is one of the largest emerging utility services that is expected to grow enormously over the next decade. Many organizations are moving into hybrid cloud/hosted computing models. Single cloud service provider introduces cost and environmental challenges. Also, multi-cloud solution implemented by the Cloud tenant is suboptimal as it requires expensive adaptation costs. Cloud Federation is a useful structure for aggregating cloud based services under a single umbrella to share resources and responsibilities for the benefit of the member cloud service providers. An efficient security model is crucial for successful cloud business. However, with the advent of large scale and multi-tenant environments, the traditional perimeter boundaries along with traditional security practices are changing. Defining and securing asset and enclave boundaries is more challenging, and system perimeter boundaries are more susceptible to breach. This paper to describe security best practices for Cloud Federation. The paper also describes a tool and technique for detecting anomalous behavior in resource usage across the federation participants. This is a particularly serious issue because of the possibility of an attacker potentially gaining access to more than one CSP federation member. Specifically, this technique is developed for Cloud Federations since they have to deal with heterogeneous multi-platform environments with a diverse mixture of data and security log schema, and it has to do this in real time. A Semantic-less Breach detection system that implements a self-learning system was prototyped and resulted in up to 87% True-Positive rate with 93% True-Negative.
机译:云计算是最大的新兴效用服务之一,预计在未来十年内将有巨大的增长。许多组织正在进入混合云/托管计算模型。单一云服务提供商带来了成本和环境挑战。而且,由云租户实施的多云解决方案不是最佳选择,因为它需要昂贵的适应成本。 Cloud Federation是一种有用的结构,用于在单个保护伞下聚合基于云的服务,以共享资源和责任,从而使成员云服务提供商受益。高效的安全模型对于成功的云业务至关重要。但是,随着大规模多租户环境的出现,传统的边界边界以及传统的安全实践正在发生变化。定义和保护资产和隔离区边界更具挑战性,并且系统外围边界更容易受到破坏。本文介绍了Cloud Federation的最佳安全实践。本文还介绍了一种工具和技术,用于检测整个联合会参与者资源使用中的异常行为。这是一个特别严重的问题,因为攻击者有可能获得对多个CSP联盟成员的访问权限。具体来说,此技术是为Cloud Federations开发的,因为它们必须处理具有多种数据和安全日志架构混合的异构多平台环境,并且必须实时进行。实施了自学习系统的无语义违规检测系统已原型化,其真假率高达87%,真阴性率高达93%。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号