• DocumentCode
    1855247
  • Title

    A framework for security quantification of networked machines

  • Author

    Wang, Hui ; Roy, Suman ; Das, Amitabha ; Paul, Sanjoy

  • Author_Institution
    Ind. Oper. Eng., Univ. of Michigan, Ann Arbor, MI, USA
  • fYear
    2010
  • fDate
    5-9 Jan. 2010
  • Firstpage
    1
  • Lastpage
    8
  • Abstract
    Widespread application of computer network has evoked a lot of interest for cyber attackers to target these systems. In addition to cryptography based protective techniques such as authentication and authorization, several defense measures, like Intrusion Detection and Tolerance, and tools are employed to protect networks thereby, making security a critical issue. Therefore, the need for defining, structuring, and quantifying security arises as a necessary first step towards measuring the effectiveness of security related deployments. This work proposes a structured approach to define and analyze security related metrics for intrusion tolerant systems for each individual host in the network and compose them in a meaningful way to provide an overall security quantification for a network. The dynamics of each machine against a particular vulnerability is modeled as a (hidden) Markov process to capture uncertainties in attacker´s action and system response. Based on these stochastic analysis, security metrics of each machine are calculated which are subsequently used in the final computation of the security metrics of the network.
  • Keywords
    authorisation; computer network security; cryptography; hidden Markov models; message authentication; probability; stochastic processes; computer network; cryptography based protective technique; hidden Markov process; intrusion detection; intrusion tolerant system; security metrics; security quantification; steady-state probability; stochastic analysis; Application software; Authentication; Authorization; Computer networks; Cryptography; Hidden Markov models; Intrusion detection; Markov processes; Protection; Uncertainty; Markov process; Network security; hidded Markov model; intrusion detection system; security metrics; security quantification; steady-state probabilities; vulnerabilities;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Communication Systems and Networks (COMSNETS), 2010 Second International Conference on
  • Conference_Location
    Bangalore
  • Print_ISBN
    978-1-4244-5487-7
  • Type

    conf

  • DOI
    10.1109/COMSNETS.2010.5431978
  • Filename
    5431978