Diversity-Based Approaches to Software Systems Security

被引:0
|
作者
Gherbi, Abdelouahed [1 ]
Charpentier, Robert [2 ]
机构
[1] ETS, Dept Software & IT Engn, Montreal, PQ, Canada
[2] Def Res & Dev Canada, Valcartier, Quebec City, PQ, Canada
来源
SECURITY TECHNOLOGY | 2011年 / 259卷
关键词
Security; IT monoculture; Diversity; Dynamic monitoring; BEHAVIORAL DISTANCE; INTRUSION;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Software systems security represents a major concern as cyber-attacks continue to grow in number and sophistication. In addition to the increasing complexity and interconnection of modern information systems, these systems run significant similar software. This is known as IT monoculture. As a consequence, software systems share common vulnerabilities, which enable the spread of malware. The principle of diversity can help in mitigating the negative effects of IT monoculture on security. One important category of the diversity-based software approaches for security purposes focuses on enabling efficient and effective dynamic monitoring of software system behavior in operation. In this paper, we present briefly these approaches and we propose a new approach which aims at generating dynamically a diverse set of lightweight traces. We initiate the discussion of some research issues which will be the focus of our future research work.
引用
收藏
页码:228 / +
页数:4
相关论文
共 50 条
  • [31] Diversity-based feature selection from neural network with low computational cost
    Kabir, Md. Monirul
    Shahjahan, Md.
    Murase, Kazuyuki
    NEURAL INFORMATION PROCESSING, PART II, 2008, 4985 : 1017 - +
  • [32] Systematic Mapping Study on Security Approaches in Secure Software Engineering
    Khan, Rafiq Ahmad
    Khan, Siffat Ullah
    Khan, Habib Ullah
    Ilyas, Muhammad
    IEEE ACCESS, 2021, 9 : 19139 - 19160
  • [33] An Analytical Security Model for Existing Software Systems
    Isazadeh, Ayaz
    Elgedawy, Islam
    Karimpour, Jaber
    Izadkhah, Habib
    APPLIED MATHEMATICS & INFORMATION SCIENCES, 2014, 8 (02): : 691 - 702
  • [34] Security method of embedded software for mechatronic systems
    Venckauskas, A.
    Jusas, N.
    Kizauskiene, L.
    Kazanavicius, E.
    Kazanavicius, V.
    MECHANIKA, 2012, (02): : 196 - 202
  • [35] Software-based Gate-level Information Flow Security for IoT Systems
    Cherupalli, Hari
    Duwe, Henry
    Ye, Weidong
    Kumar, Rakesh
    Sartori, John
    50TH ANNUAL IEEE/ACM INTERNATIONAL SYMPOSIUM ON MICROARCHITECTURE (MICRO), 2017, : 328 - 340
  • [36] Security patterns modeling and formalization for pattern-based development of secure software systems
    Hamid, B.
    Guergens, S.
    Fuchs, A.
    INNOVATIONS IN SYSTEMS AND SOFTWARE ENGINEERING, 2016, 12 (02) : 109 - 140
  • [37] Quality of Monitoring Optimization in Underwater Sensor Networks through a Multiagent Diversity-Based Gradient Approach
    Aoueileyine, Mohamed Ould-Elhassen
    Bennouri, Hajar
    Berqia, Amine
    Lind, Pedro G.
    Haugerud, Harek
    Krejcar, Ondrej
    Bouallegue, Ridha
    Yazidi, Anis
    SENSORS, 2023, 23 (08)
  • [38] Quantifying Satisfaction of Security Requirements of Cloud Software Systems
    Nhlabatsi, Armstrong
    Khan, Khaled M. D.
    Hong, Jin B.
    Kim, Dong Seong
    Fernandez, Rachael
    Fetais, Noora
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2023, 11 (01) : 426 - 444
  • [39] Architectural Solutions to Mitigate Security Vulnerabilities in Software Systems
    Anand, Priya
    Ryoo, Jungwoo
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [40] A Diversity Metric Based Study on the Correlation between Diversity and Security
    Tong, Qing
    Guo, Yunfei
    Hu, Hongchao
    Liu, Wenyan
    Cheng, Guozhen
    Li, Ling-shu
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2019, E102D (10): : 1993 - 2003