Visible to the public Measuring Attack Surface in Software ArchitectureConflict Detection Enabled

TitleMeasuring Attack Surface in Software Architecture
Publication TypeReport
Year of Publication2012
AuthorsJeffrey Gennari, David Garlan
Date Published03/2012
InstitutionCarnegie Mellon University
CityPittsburgh
Report NumberCMU-ISR-11-121
Keywordsattack surface, CMU, formal models, security, software architecture, Software Security Metrics
Abstract

In this report we show how to adapt the notion of "attack surface" to formally evaluate security properties at the architectural level of design and to identify vulnerabilities in architectural designs. Further we explore the application of this metric in the context of architecture-based transformations to improve security by reducing the attack surface. These transformations are described in detail and validated with a simple experiment.

Citation Keynode-30096

Other available formats:

Gennari_Measuring_Attack_Surface_DG.pdf
AttachmentTaxonomyKindSize
Gennari_Measuring_Attack_Surface_DG.pdfPDF document280.12 KBDownloadPreview
AttachmentSize
bytes