| dc.contributor.author | Shai, Rubin | |
| dc.contributor.author | Alderman, Ian D. | |
| dc.contributor.author | Parter, David W. | |
| dc.contributor.author | Vernon, Mary K. | |
| dc.contributor.editor | Flegel, Ulrich | |
| dc.contributor.editor | Meier, Michael | |
| dc.date.accessioned | 2019-10-16T08:50:48Z | |
| dc.date.available | 2019-10-16T08:50:48Z | |
| dc.date.issued | 2004 | |
| dc.identifier.isbn | 3-88579-375-X | |
| dc.identifier.issn | 1617-5468 | |
| dc.identifier.uri | http://dl.gi.de/handle/20.500.12116/29198 | |
| dc.description.abstract | We propose an infrastructure that helps a system administrator to identify a newly published vulnerability on the site hosts and to evaluate the vulnerability's threat with respect to the administrator's security priorities. The infrastructure foundation is the vulnerability semantics, a small set of attributes for vulnerability definition. We demonstrate that with a few attributes it is possible to define the majority of the known vulnerabilities in a way that (i) facilitates their accurate identification, and (ii) enables the administrator to rank the vulnerabilities found according to the organization's security priorities. A large scale experiment demonstrates that our infrastructure can find significant vulnerabilities even in a site with a high security awareness. | en |
| dc.language.iso | en | |
| dc.publisher | Gesellschaft für Informatik e.V. | |
| dc.relation.ispartof | Detection of intrusions and malware & vulnerability assessment, GI SIG SIDAR workshop, DIMVA 2004 | |
| dc.relation.ispartofseries | Lecture Notes in Informatics (LNI) - Proceedings, Volume P-46 | |
| dc.title | Foundations for intrusion prevention | en |
| dc.type | Text/Conference Paper | |
| dc.pubPlace | Bonn | |
| mci.reference.pages | 143-160 | |
| mci.conference.sessiontitle | Regular Research Papers | |
| mci.conference.location | Dortmund | |
| mci.conference.date | July 6-7, 2004 | |