SoK: Science, Security and the Elusive Goal of Security as a Scientific Pursuit
Title | SoK: Science, Security and the Elusive Goal of Security as a Scientific Pursuit |
Publication Type | Conference Paper |
Year of Publication | 2017 |
Authors | Herley, C., Oorschot, P. C. v |
Conference Name | 2017 IEEE Symposium on Security and Privacy (SP) |
ISBN Number | 978-1-5090-5533-3 |
Keywords | Collaboration, composability, computer security, connections between research and observable world, Context, Geometry, historical science, History, history of science, Human Behavior, human factors, Mathematical model, Metrics, philosophy of science, Policy-Governed Secure Collaboration, pubcrawl, reliability, Resiliency, Scalability, science of security, security, security of data, security research, SoK |
Abstract | The past ten years has seen increasing calls to make security research more "scientific". On the surface, most agree that this is desirable, given universal recognition of "science" as a positive force. However, we find that there is little clarity on what "scientific" means in the context of computer security research, or consensus on what a "Science of Security" should look like. We selectively review work in the history and philosophy of science and more recent work under the label "Science of Security". We explore what has been done under the theme of relating science and security, put this in context with historical science, and offer observations and insights we hope may motivate further exploration and guidance. Among our findings are that practices on which the rest of science has reached consensus appear little used or recognized in security, and a pattern of methodological errors continues unaddressed. |
URL | https://ieeexplore.ieee.org/document/7958573/ |
DOI | 10.1109/SP.2017.38 |
Citation Key | herley_sok:_2017 |
- Metrics
- SoK
- security research
- security of data
- security
- Science of Security
- Scalability
- Resiliency
- Reliability
- pubcrawl
- Policy-Governed Secure Collaboration
- Philosophy of Science
- collaboration
- Mathematical model
- Human Factors
- Human behavior
- history of science
- History
- historical science
- Geometry
- Context
- connections between research and observable world
- computer security
- composability