Foundations for Intrusion Prevention
Lade...
Datum
Autor:innen
Zeitschriftentitel
ISSN der Zeitschrift
Bandtitel
Verlag
Gesellschaft für Informatik
Sonstige Titel
Zusammenfassung
We propose an infrastructure that helps a system administrator to identify
a newly published vulnerability on the site hosts and to evaluate the vulnerability’s
threat with respect to the administrator’s security priorities. The infrastructure foundation
is the vulnerability semantics, a small set of attributes for vulnerability definition.
We demonstrate that with a few attributes it is possible to define the majority of the
known vulnerabilities in a way that (i) facilitates their accurate identification, and (ii)
enables the administrator to rank the vulnerabilities found according to the organization’s
security priorities. A large scale experiment demonstrates that our infrastructure
can find significant vulnerabilities even in a site with a high security awareness.
Beschreibung
Inhaltsverzeichnis
Schlagwörter
Intrusion Prevention
Schlagwörter nach RSWK
Zitierform
Rubin, Shai; Alderman, Ian D.; Parter, David W.; Vernon, Mary K.: Foundations for Intrusion Prevention. In Flegel, U.; Meier, M. (Eds.): Proc. of the International GI Workshop on Detection of Intrusions and Malware & Vulnerability Assessment, number P-46 in Lecture Notes in Informatics, pp. 143-160, Dortmund, Germany, July 2004, Köllen Verlag; ISBN 3-88579-365-X.
