Towards operational measures of computer security: Experimentation and modelling

作者: Tomas Olovsson , Erland Jonsson , Sarah Brocklehurst , Bev Littlewood

DOI: 10.1007/978-3-642-79789-7_31

关键词:

摘要: The two experiments described here were intended to investigate the empirical issues that arise from probabilistic view of security assessment discussed in previous paper. Specifically, they investigated problems measuring effort and reward associated with attacks breaches.

参考文章(12)
Tomas Olovsson, Erland Jonsson, Security in a Dependability Perspective Nordic Seminar on Dependable Computing Systems 1994 (NSDCS '94), Lyngby, Denmark. pp. 175- 186 ,(1994)
Tomas Olovsson, Erland Jonsson, On the Integration of Security and Dependability in Computer Systems IASTED International Conference on Reliability, Quality Control and Risk Assessment Washington DC, USA, 1992, ISBN 0-88986-171-4. pp. 93- 97 ,(1992)
T.M.P. Lee, Statistical models of trust: TCBs vs. people ieee symposium on security and privacy. pp. 10- 19 ,(1989) , 10.1109/SECPRI.1989.36274
Predicting Software Reliability Philosophical Transactions of the Royal Society A. ,vol. 327, pp. 513- 527 ,(1989) , 10.1098/RSTA.1989.0007
S. Brocklehurst, B. Littlewood, T. Olovsson, E. Jonsson, On measurement of operational security IEEE Aerospace and Electronic Systems Magazine. ,vol. 9, pp. 7- 16 ,(1994) , 10.1109/62.318876
C. Richard Attanasio, Peter W. Markstein, Ray J. Phillips, None, Penetrating an operating system: a study of VM/370 integrity IBM Systems Journal. ,vol. 15, pp. 102- 116 ,(1976) , 10.1147/SJ.151.0102
Carl E. Landwehr, Alan R. Bull, John P. McDermott, William S. Choi, A taxonomy of computer program security flaws ACM Computing Surveys. ,vol. 26, pp. 211- 254 ,(1994) , 10.1145/185403.185412
I.S. Herschberg, Make the tigers hunt for you Computers & Security. ,vol. 7, pp. 197- 203 ,(1988) , 10.1016/0167-4048(88)90336-7
S. Brocklehurst, B. Littlewood, New ways to get accurate reliability measures (software) IEEE Software. ,vol. 9, pp. 34- 42 ,(1992) , 10.1109/52.143100
Tomas Olovsson, Bev Littlewood, Sarah Brocklehurst, Erland Jonsson, Data Collection for Security Fault Forecasting - Pilot Experiment Predictably Dependable Computing Systems (PDCS) First Year Report. pp. 515- 560 ,(1993)