Title :
Hierarchy-Driven Approach for Attack Patterns in Software Security Education
Author :
Pauli, Joshua J. ; Engebretson, Patrick H.
Author_Institution :
Dakota State Univ., Madison
Abstract :
We propose a hierarchy-driven approach to facilitate student learning and foster a deeper understanding of the importance of attack patterns in computer, network, and software security. This is a fundamental point in computer and software security education because the "patch and pray" mentality of software security is insufficient. The importance and significance of our approach is justified by accentuating the deficiencies in previous ad-hoc approaches to teaching attack patterns. Because of the vast amount of information in attack pattern repositories, it is unrealistic to expect students to fully comprehend attack pattern fundamentals and its place in computer, network, and software security.
Keywords :
computer science education; security of data; attack patterns; computer security education; hierarchy-driven approach; network security; software security education; student learning; Computer networks; Computer science education; Computer security; Educational institutions; Information security; Information systems; Payloads; Programming; Software; Solid modeling; Attack Patterns; Attack Trees; Hierarchy.; Refinement;
Conference_Titel :
Information Technology: New Generations, 2008. ITNG 2008. Fifth International Conference on
Conference_Location :
Las Vegas, NV
Print_ISBN :
0-7695-3099-0
DOI :
10.1109/ITNG.2008.15