Taxonomy Analysis of Cloud Computing Vulnerabilities through Attack Vector, CVSS and Complexity Parameter
Title | Taxonomy Analysis of Cloud Computing Vulnerabilities through Attack Vector, CVSS and Complexity Parameter |
Publication Type | Conference Paper |
Year of Publication | 2019 |
Authors | Mishra, Narendra, Singh, R K |
Conference Name | 2019 International Conference on Issues and Challenges in Intelligent Computing Techniques (ICICT) |
Date Published | Sept. 2019 |
Publisher | IEEE |
ISBN Number | 978-1-7281-1772-0 |
Keywords | attack vector, Attack Vector (AV), attack vectors, cloud computing, cloud computing system, cloud computing vulnerabilities, cloud enabled services, cloud specific identified vulnerabilities, cloud specific vulnerabilities, cloud vulnerabilities, complexity parameter, comprehensive taxonomy, CVSS, CVSS score, Human Behavior, NVD, pubcrawl, resilience, Resiliency, Scalability, security of data, security risks, security vulnerabilities, Taxonomy, unified taxonomy |
Abstract | The world is witnessing an exceptional expansion in the cloud enabled services which is further growing day by day due to advancement & requirement of technology. However, the identification of vulnerabilities & its exploitation in the cloud computing will always be the major challenge and concern for any cloud computing system. To understand the challenges and its consequences and further provide mitigation techniques for the vulnerabilities, the identification of cloud specific vulnerabilities needs to be examined first and after identification of vulnerabilities a detailed taxonomy must be positioned. In this paper several cloud specific identified vulnerabilities have been studied which is listed by the NVD, ENISA CSA etc accordingly a unified taxonomy for security vulnerabilities has been prepared. In this paper we proposed a comprehensive taxonomy for cloud specific vulnerabilities on the basis of several parameters like attack vector, CVSS score, complexity etc which will be further act as input for the analysis and mitigation of cloud vulnerabilities. Scheming of Taxonomy of vulnerabilities is an effective way for cloud administrators, cloud mangers, cloud consumers and other stakeholders for identifying, understanding and addressing security risks. |
URL | https://ieeexplore.ieee.org/document/8977667 |
DOI | 10.1109/ICICT46931.2019.8977667 |
Citation Key | mishra_taxonomy_2019 |
- CVSS
- unified taxonomy
- taxonomy
- security vulnerabilities
- security risks
- security of data
- Scalability
- Resiliency
- resilience
- pubcrawl
- NVD
- Human behavior
- CVSS score
- attack vector
- comprehensive taxonomy
- complexity parameter
- cloud vulnerabilities
- cloud specific vulnerabilities
- cloud specific identified vulnerabilities
- cloud enabled services
- cloud computing vulnerabilities
- cloud computing system
- Cloud Computing
- Attack vectors
- Attack Vector (AV)