EXECUTION MONITORING OF SECURITY-CRITICAL PROGRAMS IN A DISTRIBUTED SYSTEM: A SPECIFICATION-BASED APPROACH By

نویسندگان

  • Calvin Cheuk Wang
  • Manfred Ruschitzka
  • Matthew Bishop
  • Jim Hoagland
  • Steven Cheung
چکیده

Committee in Charge 1996 i Acknowledgements I a m d eeply indebted to m y advisors, Karl Levitt a n d Manfred Ruschitzka. Without their help and guidance, I was not able to nish this work. Special thanks to Karl for his precious time a n d e n ergy, a n d h i s p a tience in teaching m e not only how t o perform research, but also how to write proposals, deal with sponsors, give presentations, and survive as a researcher in the security eld. I w ould like t o t hank Manfred for the t ime a n d eeort he h as spent w orking with me a n d p o lishing t he dissertation. His ideas and insightful suggestions have greatly enrichedthe t echnical content o f t his work; his persistent pursuit of clarity h as greatly improveditspresentation. I would also like to thank the other member of my committee, Matt Bishop, for his valuable comments o n t his dissertation. I also thank the fellow s t udents a n d researchers in the security group for their comments a n d feedbacks on myresearch. Thank Jim Hoagland, Steven Cheung, and Raymond Yip for proofreading drafts o f t his dissertation. I w ould like t o t hank my family and friends for their support and constant encouragement , especially my wife Mandy, for her patience and u nderstanding a n d also for her great assistance in proofreading early drafts o f t his dissertation. Finally, I would like to thank God my heavenly Father, my beloved Jesus, and the Holy Spirit for His eternal love, encouragement and constant nourishment. His grace has always been suucient for me.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Execution Monitoring of Security-Critical Programs in Distributed Systems: A Specification-Based Approach

This paper describes a specification-based approach to detect exploitations of vulnerabdities in securitycritical programs. The approach utilizes security specifications that describe the intended behavior of programs and scans audit trails for operations that are in violation of the specifications. We developed a formal framework for specifying the security-relevant behavior of programs, on wh...

متن کامل

A Lightweight Intrusion Detection System Based on Specifications to Improve Security in Wireless Sensor Networks

Due to the prevalence of Wireless Sensor Networks (WSNs) in the many mission-critical applications such as military areas, security has been considered as one of the essential parameters in Quality of Service (QoS), and Intrusion Detection System (IDS) is considered as a fundamental requirement for security in these networks. This paper presents a lightweight Intrusion Detection System to prote...

متن کامل

Dynamic configuration and collaborative scheduling in supply chains based on scalable multi-agent architecture

Due to diversified and frequently changing demands from customers, technological advances and global competition, manufacturers rely on collaboration with their business partners to share costs, risks and expertise. How to take advantage of advancement of technologies to effectively support operations and create competitive advantage is critical for manufacturers to survive. To respond to these...

متن کامل

Formal approach on modeling and predicting of software system security: Stochastic petri net

To evaluate and predict component-based software security, a two-dimensional model of software security is proposed by Stochastic Petri Net in this paper. In this approach, the software security is modeled by graphical presentation ability of Petri nets, and the quantitative prediction is provided by the evaluation capability of Stochastic Petri Net and the computing power of Markov chain. Each...

متن کامل

Provably secure and efficient identity-based key agreement protocol for independent PKGs using ECC

Key agreement protocols are essential for secure communications in open and distributed environments. Recently, identity-based key agreement protocols have been increasingly researched because of the simplicity of public key management. The basic idea behind an identity-based cryptosystem is that a public key is the identity (an arbitrary string) of a user, and the corresponding private key is ...

متن کامل

System Health and Intrusion Monitoring Using a Hierarchy of Constraints

This paper presents a new approach to run-time security monitoring that can detect system abnormalities including attacks, faults, or operational errors. The approach, System Health and Intrusion Monitoring (SHIM), employs a hierarchy of constraints to describe correct operation of a system at various levels of abstraction. The constraints capture static behavior, dynamic behavior, and time-cri...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1996