• DocumentCode
    3224622
  • Title

    An Ontology Framework for Managing Security Attacks and Defences in Component Based Software Systems

  • Author

    Vorobiev, Artem ; Han, Jun ; Bekmamedova, Nargiza

  • Author_Institution
    Swinburne Univ. of Technol., Melbourne
  • fYear
    2008
  • fDate
    26-28 March 2008
  • Firstpage
    552
  • Lastpage
    561
  • Abstract
    Software systems become increasingly distributed, involving many independent and collaborating components working towards achieving system goals. At the same time, security attacks on these systems have also grown being more sophisticated and are quite difficult to identify and mitigate, in particular including distributed attacks. In this paper, we argue that one way to detect and resist against such attacks is through the collaboration of a system´s constituent components. To achieve collaborative defense in a distributed component-based system, a common basis (vocabulary) is needed for the components to communicate and work with each other in detecting attacks and devising countermeasures. We adopt an ontological approach to establishing such a common base and introduce ontologies concerning security attacks and defenses. The ontologies specify the security concepts and their relationships in a way understandable to both humans and software agents. We use a case study involving Mitnick attacks to demonstrate how system components use the ontologies to detect and counter attacks.
  • Keywords
    object-oriented programming; ontologies (artificial intelligence); security of data; collaborative defense; component based software systems; managing security attacks; ontology framework; Collaborative software; Collaborative work; Counting circuits; Humans; Ontologies; Resists; Security; Software agents; Software systems; Vocabulary;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Software Engineering, 2008. ASWEC 2008. 19th Australian Conference on
  • Conference_Location
    Perth, WA
  • ISSN
    1530-0803
  • Print_ISBN
    978-0-7695-3100-7
  • Type

    conf

  • DOI
    10.1109/ASWEC.2008.4483245
  • Filename
    4483245