首页    期刊浏览 2025年03月02日 星期日
登录注册

文章基本信息

  • 标题:Intrusion-Avoidance via System Diversity
  • 本地全文:下载
  • 作者:Anatoliy Gorbenko ; Vyacheslav Kharchenko ; Olga Tarasyuk
  • 期刊名称:Information and Security
  • 印刷版ISSN:1311-1493
  • 出版年度:2012
  • 卷号:28
  • 期号:1
  • 页码:154-158
  • 出版社:ProCon Ltd.
  • 摘要:The paper discusses a generic intrusion-avoidance architecture allowing the system architects to decrease the risk of intrusions. The architecture employs software diversity at various system levels and dynamically reconfigures the deployment environment to avoid intrusions. This solution reduces the so-called system’s days-of-risk which is a period of an increased security risk between the time when a vulnerability is publicly disclosed to the time when a patch is available to fix it. To select the less vulnerable system configuration we propose metrics estimating security risks by accounting a number of not-fixed vulnerabilities and their severity.
  • 关键词:diversity; intrusion avoidance.; Risk; security; ;vulnerability
国家哲学社会科学文献中心版权所有