Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to content
Licensed Unlicensed Requires Authentication Published by De Gruyter December 14, 2007

Foundations for Intrusion Prevention

  • S. Rubin , I. D. Alderman and M. K. Vernon

ABSTRACT

We propose an infrastructure that helps system administrators to identify a newly published vulnerability on the site hosts, to evaluate the vulnerability threat with respect to the administrators' security priorities, and to repair the vulnerable hosts. The infrastructure foundation is the vulnerability semantics, a small set of attributes for vulnerability definition. We demonstrate that with a few attributes it is possible to define the majority of the known vulnerabilities in a way that facilitates their accurate identification, and enables the administrators to rank the vulnerabilities found according to the organization's security priorities. A large scale experiment demonstrates that our infrastructure can find significant vulnerabilities even in a site with high security awareness.

Published Online: 2007-12-14
Published in Print: 2004-December

© Copyright by K.G. Saur Verlag 2004

Downloaded on 5.9.2024 from https://www.degruyter.com/document/doi/10.1515/PIKO.2004.209/html
Scroll to top button