作者
Charilaos Skandylas, Narges Khakpour
发表日期
2021/2/1
期刊
Future Generation Computer Systems
卷号
115
页码范围
421-437
出版商
North-Holland
简介
As threats to computer security become more common, complex and frequent, systems that can automatically protect themselves from attacks are imminently needed. In this paper, we propose a formal approach to achieve self-protection by performing security analysis on self-adaptive systems, taking the adaptation process into account. We use probabilistic model checking to quantitatively analyze adaptation security, rank the strategies available and select the most secure one to apply in the system. We have incorporated our approach in Rainbow which is a framework to develop architecture-based self-adaptive systems. To evaluate our approach’s effectiveness, we applied it on two case studies: a simple document storage system and ZNN, a well known self-adaptive exemplar. The results show that applying our approach can guarantee a reasonable degree of security, both during and after adaptation.
引用总数
20212022202320242212
学术搜索中的文章