Toward a novel rule-based attack description and response language
Autor: | Samih Souissi |
---|---|
Přispěvatelé: | Télécom ParisTech |
Rok vydání: | 2015 |
Předmět: |
attack language
Syntax (programming languages) Computer science business.industry attack description media_common.quotation_subject Rule-based system Modular design Computer security computer.software_genre [INFO.INFO-CL]Computer Science [cs]/Computation and Language [cs.CL] Expression (mathematics) Constructed language [INFO.INFO-CR]Computer Science [cs]/Cryptography and Security [cs.CR] composition Originality Information system security event business Composition (language) computer detection rules media_common |
Zdroj: | IAS 2015 11th International Conference on Information Assurance and Security (IAS) Information Assurance and Security 2015 Information Assurance and Security 2015, Dec 2015, Marrakech, Morocco. ⟨10.1109/ISIAS.2015.7492743⟩ |
Popis: | International audience; In recent years, attacks have become more diverse and complex, their detection has emerged as a major issue and a primary security challenge. There is a need to represent and share information about these attacks. This paper presents a new language for attack detection and response. The objective is to simplify complex rules' expression, thanks to a modular and intuitive syntax that gives a high power of expression. The originality of our approach is that rules' syntax can be deduced from a certain behavior or automatically generated from a valid behavioral scenario. The paper presents the main concepts behind the proposed approach that deals with the growing complexity of information systems, applications and attacks. |
Databáze: | OpenAIRE |
Externí odkaz: |