Using Probability Densities to Evolve more Secure Software Configurations

التفاصيل البيبلوغرافية
العنوان: Using Probability Densities to Evolve more Secure Software Configurations
المؤلفون: H.D. Gage, Matthew R. McNiece, Errin W. Fulp, Sarah K. Gage, Caroline A. Odell
المصدر: SafeConfig@CCS
بيانات النشر: ACM, 2015.
سنة النشر: 2015
مصطلحات موضوعية: Configuration Management (ITSM), Sequence, Software, Computer science, business.industry, Distributed computing, Mutation (genetic algorithm), Evolutionary algorithm, Process (computing), business, Resilience (network), Selection (genetic algorithm)
الوصف: The use of Evolutionary Algorithms (EAs) is one method for securing software configurations in a changing environment. Using this approach, configurations are modeled as biological chromosomes, and a continual sequence of selection, recombination, and mutation processes is performed. While this approach can evolve secure configurations based on current conditions, it is also possible to inadvertently lose solutions to previous threats during the evolution process. This paper improves the performance of EA-based configuration management by incorporating parameter-setting history. Over the generations (EA iterations), counts are maintained regarding the parameter-settings and the security of the configuration. Probability densities are then developed and used during mutation to encourage the selection of previously secure settings. As a result, these secure settings are likely to be maintained as attacks alternate between vulnerabilities. Experimental results using configuration parameters from RedHat Linux installed Apache web-servers indicate the addition of parameter history significantly improves the ability to maintain secure settings as an attacker alternates between different threats.
URL الوصول: https://explore.openaire.eu/search/publication?articleId=doi_________::30a56e8e984538eed7e9bbadafd0b5fd
https://doi.org/10.1145/2809826.2809831
حقوق: CLOSED
رقم الأكسشن: edsair.doi...........30a56e8e984538eed7e9bbadafd0b5fd
قاعدة البيانات: OpenAIRE