Control charting methods for autocorrelated cyber vulnerability data

被引:11
作者
Afful-Dadzie, Anthony [1 ]
Allen, Theodore T. [2 ]
机构
[1] Univ Ghana, Business Sch, Accra, Ghana
[2] Ohio State Univ, Integrated Syst Engn, 1971 Neil Ave 210 Baker Syst, Columbus, OH 43210 USA
基金
美国国家科学基金会;
关键词
autocorrelation; average run length (ARL); control charts; EWMA control charts; statistical control;
D O I
10.1080/08982112.2015.1125926
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Control charting cyber vulnerabilities is challenging because the same vulnerabilities can remain from period to period. Also, hosts (personal computers, servers, printers, etc.) are often scanned infrequently and can be unavailable during scanning. To address these challenges, control charting of the period-to-period demerits per host using a hybrid moving centerline residual-based and adjusted demerit (MCRAD) chart is proposed. The intent is to direct limited administrator resources to unusual cases when automatic patching is insufficient. The proposed chart is shown to offer superior average run length performance compared with three alternative methods from the literature. The methods are illustrated using three datasets.
引用
收藏
页码:313 / 325
页数:13
相关论文
共 15 条
[1]   TIME-SERIES MODELING FOR STATISTICAL PROCESS-CONTROL [J].
ALWAN, LC ;
ROBERTS, HV .
JOURNAL OF BUSINESS & ECONOMIC STATISTICS, 1988, 6 (01) :87-95
[2]  
[Anonymous], 2006, P 2 ACM WORKSH QUAL
[3]  
[Anonymous], 2008, IEEE INFOCOM 2008 TH
[4]  
[Anonymous], 1994, Time Series Analysis, Forecasting and Control
[5]  
COX DR, 1961, J ROY STAT SOC B, V23, P414
[6]   A method of rating manufactured product [J].
Dodge, HF .
BELL SYSTEM TECHNICAL JOURNAL, 1928, 7 (02) :350-368
[7]  
Dowdy J, 2012, SECURING CYBER SPACE
[8]  
Enders C.K., 2010, APPL MISSING DATA AN
[9]   Model-based control chart for autoregressive and correlated data [J].
Loredo, EN ;
Jearkpaporn, D ;
Borror, CM .
QUALITY AND RELIABILITY ENGINEERING INTERNATIONAL, 2002, 18 (06) :489-496
[10]  
Mell Peter., 2007, FORUM INCIDENT RESPO