• DocumentCode
    37062
  • Title

    A Model-Based Validated Autonomic Approach to Self-Protect Computing Systems

  • Author

    Qian Chen ; Abdelwahed, Sherif ; Erradi, Abdelkarim

  • Author_Institution
    Dept. of Electr. & Comput. Eng., Mississippi State Univ., Starkville, MS, USA
  • Volume
    1
  • Issue
    5
  • fYear
    2014
  • fDate
    Oct. 2014
  • Firstpage
    446
  • Lastpage
    460
  • Abstract
    This paper introduces an autonomic model-based cyber security management approach for the Internet of Things (IoT) ecosystems. The approach aims at realizing a self-protecting system, which has the ability to autonomously estimate, detect, and react to cyber attacks at an early stage. Our approach integrates various model-based techniques including: 1) real-time estimation and baseline security controls to predict and eliminate potential cyber attacks; 2) data analysis to identify and classify attacks; and 3) a multicriteria optimization method to select the optimal active response for deploying countermeasures while maintaining system functions. The prototype framework has been developed with a master controller virtual machine, which can be configured for various platforms. Experimental results demonstrated the effectiveness of this proposed approach in protecting a Web-based application against known and unknown attacks with little or no human intervention.
  • Keywords
    Internet; Internet of Things; security of data; Internet of Things; IoT ecosystems; Web-based application; autonomic model-based cyber security management; baseline security controls; countermeasures; cyber attacks; data analysis; maintaining system functions; master controller virtual machine; model-based validated autonomic approach; multicriteria optimization; optimal active response; prototype framework; real-time estimation; self-protect computing systems; self-protecting system; Computer security; Forecasting; Network security; Ports (Computers); Real-time systems; Servers; Ubiquitous computing; Autonomic computing; Web services; cyber security; self-protection;
  • fLanguage
    English
  • Journal_Title
    Internet of Things Journal, IEEE
  • Publisher
    ieee
  • ISSN
    2327-4662
  • Type

    jour

  • DOI
    10.1109/JIOT.2014.2349899
  • Filename
    6880794