'POLICE': Agent based threat modelling

Autor: Alok Dubli, Akhil Mangla
Rok vydání: 2011
Předmět:
Zdroj: 2011 Fourth International Conference on Modeling, Simulation and Applied Optimization.
DOI: 10.1109/icmsao.2011.5775504
Popis: The paper aims at defining the agent based threat modelling from the viewpoint of security agents. Agent causal to threat creates insecure gateways and paths which lead to vulnerabilities in the system. Any system built on to a vulnerable foundation of a vulnerable language or architecture shall forever remain risk bound. Security agents or “POLICE” agents as we term them come dexterous. The modelling is defined at a stage where a complete class definition or behaviour model to a system is obtained. The agents a trained over system interaction threats, the training requires an explicit mention of system use and implicit details of system data flow[4]. The trained agent is assigned the job. The job of the agent would be to monitor, control and arrest. Agent with good results are promoted and henceforth. This type of modelling is tried for monolithic software system. “POLICE” Agents are a counter modelling technique to threat based agent modelling and it stands at defining security enhancements to a system. Real time example in coding constructs where in such modelling could be reverse engineered from previously designed subroutines is Exception Handler, etc.
Databáze: OpenAIRE