首页> 外文会议>International Conference on Cloud Computing and Services Science >About being the Tortoise or the Hare?: A Position Paper on Making Cloud Applications too Fast and Furious for Attackers
【24h】

About being the Tortoise or the Hare?: A Position Paper on Making Cloud Applications too Fast and Furious for Attackers

机译:关于成为乌龟或野兔?:一个封面纸,用于使云应用太快而令人生意地为攻击者

获取原文

摘要

Cloud applications expose - beside service endpoints - also potential or actual vulnerabilities. And attackers have several advantages on their side. They can select the weapons, the point of time and the point of attack. Very often cloud application security engineering efforts focus to harden the fortress walls but seldom assume that attacks may be successful. So, cloud applications rely on their defensive walls but seldom attack intruders actively. Biological systems are different. They accept that defensive "walls" can be breached at several layers and therefore make use of an active and adaptive defense system to attack potential intruders - an immune system. This position paper proposes such an immune system inspired approach to ensure that even undetected intruders can be purged out of cloud applications. This makes it much harder for intruders to maintain a presence on victim systems. Evaluation experiments with popular cloud service infrastructures (Amazon Web Services, Google Compute Engine, Azure and OpenStack) showed that this could minimize the undetected acting period of intruders down to minutes.
机译:云应用程序公开 - 除了服务端点 - 也潜在或实际漏洞。攻击者在他们身边有几个优点。他们可以选择武器,时间点和攻击点。通常云应用程序安全工程努力重点融为堡垒墙壁,但很少假设攻击可能是成功的。因此,云应用依赖于他们的防御墙,但积极攻击入侵者。生物系统是不同的。他们接受了防御性“墙壁”可以在几层突破,因此利用有效和自适应的防御系统来攻击潜在的入侵者 - 一种免疫系统。该职位论文提出了这种免疫系统启发方法,以确保甚至未被发现的入侵者可以清除云应用。这使入侵者更难维持在受害者系统上的存在。具有流行云服务基础设施的评估实验(亚马逊Web服务,Google Compute引擎,Azure和OpenStack)表明,这可能会最大限度地减少入侵者的未检测到的代理时期到几分钟。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号