DocumentCode
3224622
Title
An Ontology Framework for Managing Security Attacks and Defences in Component Based Software Systems
Author
Vorobiev, Artem ; Han, Jun ; Bekmamedova, Nargiza
Author_Institution
Swinburne Univ. of Technol., Melbourne
fYear
2008
fDate
26-28 March 2008
Firstpage
552
Lastpage
561
Abstract
Software systems become increasingly distributed, involving many independent and collaborating components working towards achieving system goals. At the same time, security attacks on these systems have also grown being more sophisticated and are quite difficult to identify and mitigate, in particular including distributed attacks. In this paper, we argue that one way to detect and resist against such attacks is through the collaboration of a system´s constituent components. To achieve collaborative defense in a distributed component-based system, a common basis (vocabulary) is needed for the components to communicate and work with each other in detecting attacks and devising countermeasures. We adopt an ontological approach to establishing such a common base and introduce ontologies concerning security attacks and defenses. The ontologies specify the security concepts and their relationships in a way understandable to both humans and software agents. We use a case study involving Mitnick attacks to demonstrate how system components use the ontologies to detect and counter attacks.
Keywords
object-oriented programming; ontologies (artificial intelligence); security of data; collaborative defense; component based software systems; managing security attacks; ontology framework; Collaborative software; Collaborative work; Counting circuits; Humans; Ontologies; Resists; Security; Software agents; Software systems; Vocabulary;
fLanguage
English
Publisher
ieee
Conference_Titel
Software Engineering, 2008. ASWEC 2008. 19th Australian Conference on
Conference_Location
Perth, WA
ISSN
1530-0803
Print_ISBN
978-0-7695-3100-7
Type
conf
DOI
10.1109/ASWEC.2008.4483245
Filename
4483245
Link To Document