A model-based mode-switching framework based on security vulnerability scores
نویسندگان
چکیده
Software vulnerabilities can affect critical systems within an organization impacting processes, workflows, privacy, and safety. When a software vulnerability becomes known, affected are at risk until appropriate updates become available eventually deployed. This period last from few days to several months, during which attackers develop exploits take advantage of the vulnerability. It is tedious time-consuming keep track manually perform necessary actions shut down, update, or modify systems. Vulnerabilities system components, such as web server, but sometimes only target specific versions component combinations. In this paper, we propose novel approach for automated mode switching support administrators in dealing with reducing exposure. We rely on model-driven techniques use multi-modal architecture react discovered provide contingency support. have developed dedicated domain-specific language describe potential mitigation switches. evaluated our server case study, analyzing historical data. Based scores sum, demonstrated that less vulnerable modes reduced attack surface 98.9% analyzed time. Editor’s note: Open Science material was validated by Journal Systems Board.
منابع مشابه
mortality forecasting based on lee-carter model
over the past decades a number of approaches have been applied for forecasting mortality. in 1992, a new method for long-run forecast of the level and age pattern of mortality was published by lee and carter. this method was welcomed by many authors so it was extended through a wider class of generalized, parametric and nonlinear model. this model represents one of the most influential recent d...
15 صفحه اولA Policy-based Model-Driven Security Framework
The adoption of a model-driven approach to the construction of applications places the focus on business logic and takes it away from detailed middleware mechanisms. It also opens new opportunities for more detailed and more dynamic control of non-functional properties. This position statement illustrates the possibilities by considering the ways in which maintenance of security infrastructure ...
متن کاملASVC: An Automatic Security Vulnerability Categorization Framework Based on Novel Features of Vulnerability Data
— Security vulnerabilities are a main cause of network security. Vulnerability classification gives us a better understanding of the essence of vulnerabilities, which help propose efficient solutions. However, applying Vulnerability Categorization Standard (VCS) to manually categorize vulnerabilities is impracticable since it is time-consuming and subjective. To address this issue, a new frame...
متن کاملطراحی، ساخت و کنترل model based یک روبات موازی هگزا
توسعه و افزایش تولید صنایع و در پی آن رشد اقتصادی و اجتماعی یک جامعه در قرن جدید، با خودکار کردن روندهای تولید گره خورده است. یکی از اجزای خودکار ساختن صنایع، استفاده از روباتها در چرخه تولید به منظورهای مختلف می¬باشد؛ رنگ پاشی، جابجایی، نصب قطعات و جوشکاری بخش کوچکی از فضایی است که به روباتهای کارا نیازمند است. پس از استفاده فراوان از روباتهای سرال در صنایع و انجام پژوهشهای پایه¬ای بر روی طراح...
task-based language teaching in iran: a mixed study through constructing and validating a new questionnaire based on theoretical, sociocultural, and educational frameworks
جنبه های گوناگونی از زندگی در ایران را از جمله سبک زندگی، علم و امکانات فنی و تکنولوژیکی می توان کم یا بیش وارداتی در نظر گرفت. زبان انگلیسی و روش تدریس آن نیز از این قاعده مثتسنی نیست. با این حال گاهی سوال پیش می آید که آیا یک روش خاص با زیر ساخت های نظری، فرهنگی اجتماعی و آموزشی جامعه ایرانی سازگاری دارد یا خیر. این تحقیق بر اساس روش های ترکیبی انجام شده است.پرسش نامه ای نیز برای زبان آموزان ...
ذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
ژورنال
عنوان ژورنال: Journal of Systems and Software
سال: 2023
ISSN: ['0164-1212', '1873-1228']
DOI: https://doi.org/10.1016/j.jss.2023.111633