Title :
A distributed attack simulation for quantitative security evaluation using SimEvents
Author :
Khazan, Golriz ; Azgomi, Mohammad Abdollahi
Author_Institution :
ICT Group, Iran Univ. of Sci. & Technol., Tehran
Abstract :
Any system during its lifecycle could be subject to internal or external accidental or malicious threats. Therefore attention to system security is very important nowadays. Security brings in concerns for availability, in addition to confidentiality and integrity. Many security assessment methodologies like ITSEC, CC and etc were used up to now, but most of them have some limitations for being used in design phase of systems. In this paper, simulation of a network system for quantitative security evaluation (QSE) based on discrete-event simulation (DES) by SimEvents is presented. First, the system in normal state is simulated then an attacker is modeled as a client by means of zombies attacks to the system. Subsequently the availability of system begins to decrease. Finally the system cannot respond to the requests. After this simulation, the availability of system as an important security measure in any moment of simulation time is measured. At the end, a case study of distributed denial of service (DDoS) simulation is presented and the availability measure of the system is evaluated.
Keywords :
discrete event simulation; security of data; CC; DDoS; ITSEC; SimEvents; availability; confidentiality; discrete-event simulation; distributed attack simulation; distributed denial of service simulation; external accidental threats; integrity; internal accidental threats; malicious threats; quantitative security evaluation; security assessment methodologies; zombies attacks; Availability; Computational modeling; Computer crime; Computer simulation; Data security; Discrete event simulation; Exponential distribution; Information security; Random number generation; Time measurement;
Conference_Titel :
Computer Systems and Applications, 2009. AICCSA 2009. IEEE/ACS International Conference on
Conference_Location :
Rabat
Print_ISBN :
978-1-4244-3807-5
Electronic_ISBN :
978-1-4244-3806-8
DOI :
10.1109/AICCSA.2009.5069352