Measuring Attack Surface in Software Architecture
Title | Measuring Attack Surface in Software Architecture |
Publication Type | Report |
Year of Publication | 2012 |
Authors | Jeffrey Gennari, David Garlan |
Date Published | 03/2012 |
Institution | Carnegie Mellon University |
City | Pittsburgh |
Report Number | CMU-ISR-11-121 |
Keywords | attack surface, CMU, formal models, security, software architecture, Software Security Metrics |
Abstract | In this report we show how to adapt the notion of "attack surface" to formally evaluate security properties at the architectural level of design and to identify vulnerabilities in architectural designs. Further we explore the application of this metric in the context of architecture-based transformations to improve security by reducing the attack surface. These transformations are described in detail and validated with a simple experiment. |
Citation Key | node-30096 |
Attachment | Size |
---|---|
bytes |
Groups: