Abstract | ||
---|---|---|
Web services provide a general basis of convenient access and operation for cloud applications. However, such services become very vulnerable when being attacked, especially in the situation where service continuity is one of the most important requirements. This issue highlights the necessity to apply reliable and formal methods to attack tolerance in Web services. In this paper, we propose a Coloured Petri Nets based method for attack tolerance by modelling and analysing basic behaviours of attack-network interaction, attack detectors and their tolerance solutions. Furthermore, complex attacks can be analysed and tolerance solutions deployed by identifying these basic attack-network interactions and composing their solutions. The validity of our method is demonstrated through a case study on attack tolerance in cloud-based medical information storage. |
Year | DOI | Venue |
---|---|---|
2020 | 10.1109/APSEC51365.2020.00024 | 2020 27th Asia-Pacific Software Engineering Conference (APSEC) |
Keywords | DocType | ISSN |
attack tolerance,coloured Petri nets,Web services,formal methods,cloud security | Conference | 1530-1362 |
ISBN | Citations | PageRank |
978-1-7281-9554-4 | 0 | 0.34 |
References | Authors | |
0 | 5 |
Name | Order | Citations | PageRank |
---|---|---|---|
Wenbo Zhou | 1 | 0 | 0.34 |
Philippe Dague | 2 | 57 | 5.34 |
Lei Liu | 3 | 171 | 17.10 |
Lina Ye | 4 | 26 | 8.75 |
Fatiha Zaïdi | 5 | 200 | 17.06 |