Title
Probabilistic aspects: checking security in an imperfect world
Abstract
We address the challenges arising from enforcing security policies in an imperfect world - in a system involving humans, a determined attacker always has a chance of circumventing any security. We motivate our approach by two examples: an on-line auction house; and a airport security system. In our work, security policies are enforced using a probabilistic aspect-oriented approach; policies are combined using a rich set of policy composition operators. We present the examples using a process-based language in which processes and local data are distributed across a number of locations (network addresses). The formal definition of the language gives rise to Markov Decision Processes.
Year
DOI
Venue
2010
10.1007/978-3-642-15640-3_23
TGC
Keywords
Field
DocType
markov decision processes,determined attacker,process-based language,probabilistic aspect-oriented approach,local data,network address,security policy,imperfect world,formal definition,airport security system,aspect oriented,composition operator,markov decision process
Security convergence,Security testing,Security through obscurity,Network security policy,Computer science,Computer security,Security service,Cloud computing security,Security information and event management,Computer security model
Conference
Volume
ISSN
ISBN
6084
0302-9743
3-642-15639-8
Citations 
PageRank 
References 
2
0.36
9
Authors
3
Name
Order
Citations
PageRank
Chris Hankin193291.56
flemming nielson21769172.05
Hanne Riis Nielson31719153.77