Cluster-based vulnerability assessment of operating systems and web browsers

被引:0
|
作者
Yazdan Movahedi
Michel Cukier
Ambrose Andongabo
Ilir Gashi
机构
[1] University of Maryland,
[2] City,undefined
[3] University of London,undefined
来源
Computing | 2019年 / 101卷
关键词
Vulnerability assessment; Nonhomogeneous Poisson process; Clustering; Software reliability models; Software reliability growth; Security growth models; 62H30; 68M15;
D O I
暂无
中图分类号
学科分类号
摘要
Organizations face the issue of how to best allocate their security resources. Thus, they need an accurate method for assessing how many new vulnerabilities will be reported for the operating systems (OSs) and web browsers they use in a given time period. Our approach consists of clustering vulnerabilities by leveraging the text information within vulnerability records, and then simulating the mean value function of vulnerabilities by relaxing the monotonic intensity function assumption, which is prevalent among the studies that use software reliability models (SRMs) and nonhomogeneous Poisson process in modeling. We applied our approach to the vulnerabilities of four OSs (Windows, Mac, IOS, and Linux) and four web browsers (Internet Explorer, Safari, Firefox, and Chrome). Out of the total eight OSs and web browsers we analyzed using a power-law model issued from a family of SRMs, the model was statistically adequate for modeling in six cases. For these cases, in terms of estimation and forecasting capability, our results, compared to a power-law model without clustering, are more accurate in all cases but one.
引用
收藏
页码:139 / 160
页数:21
相关论文
共 50 条
  • [31] Analysis of prioritized cluster-based crossbar systems
    Wang, HJ
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 1997, 12 (04): : 255 - 261
  • [32] DEPENDABILITY EVALUATION OF CLUSTER-BASED DISTRIBUTED SYSTEMS
    Anceaume, Emmanuelle
    Brasileiro, Francisco
    Ludinard, Romaric
    Sericola, Bruno
    Tronel, Frederic
    INTERNATIONAL JOURNAL OF FOUNDATIONS OF COMPUTER SCIENCE, 2011, 22 (05) : 1123 - 1142
  • [33] Software environments for cluster-based display systems
    Chen, YQ
    Chen, H
    Clark, DW
    Liu, ZY
    Wallace, G
    Li, K
    FIRST IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER COMPUTING AND THE GRID, PROCEEDINGS, 2001, : 202 - 210
  • [34] Operation of Cluster-Based Web System Guaranteeing Web Page Response Time
    Zatwarnicki, Krzysztof
    COMPUTATIONAL COLLECTIVE INTELLIGENCE: TECHNOLOGIES AND APPLICATIONS, 2013, 8083 : 477 - 486
  • [35] ANALYSIS OF A CLASS OF CLUSTER-BASED MULTIPROCESSOR SYSTEMS
    AGRAWAL, DP
    MAHGOUB, IO
    INFORMATION SCIENCES, 1987, 43 (1-2) : 85 - 105
  • [36] An Integrated Adaptive Management System for cluster-based web services
    Jiang, Ying
    Meng, Dan
    Ren, Chao
    Zhan, Jianfeng
    2006 IEEE INTERNATIONAL CONFERENCE ON CLUSTER COMPUTING, VOLS 1 AND 2, 2006, : 427 - +
  • [37] On improving performance and conserving power in cluster-based web servers
    Lee, HK
    Vageesan, G
    Kim, EJ
    2005 IEEE International Conference on Web Services, Vols 1 and 2, Proceedings, 2005, : 799 - 800
  • [38] Cluster-based modularization of processes recovered from web applications
    Di Francescomarino, Chiara
    Marchetto, Alessandro
    Tonella, Paolo
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2013, 25 (02) : 113 - 138
  • [39] A Cluster-Based Web System Providing Differentiated and Guaranteed Services
    Mauro Andreolini
    Emiliano Casalicchio
    Michele Colajanni
    Marco Mambelli
    Cluster Computing, 2004, 7 (1) : 7 - 19
  • [40] The research on the proxy cache in a Cluster-Based Web Caching System
    Guo, TT
    Han, XC
    Lin, XY
    International Symposium on Communications and Information Technologies 2005, Vols 1 and 2, Proceedings, 2005, : 210 - 213