ThreatRiskEvaluator: A Tool for Assessing Threat-Specific Security Risks in the Cloud

被引:1
|
作者
Nhlabatsi, Armstrong [1 ]
Hussein, Alaa [1 ]
Fernandez, Rachael [1 ]
Fetais, Noora [1 ]
Hong, Jin [2 ]
Kim, DongSeong [3 ]
Khan, Khaled M. [1 ]
机构
[1] Qatar Univ, KINDI Ctr Comp Res, Doha, Qatar
[2] Univ Western Australia, Dept Comp Sci & Software Engn, Nedlands, WA, Australia
[3] Univ Queensland, Sch Informat Technol & Elect Engn, Fac Engn Architecture & Informat Technol, Brisbane, Qld, Australia
关键词
Cloud computing; vulnerability; security risk; risk assessment; security threats; MANAGEMENT; FRAMEWORK;
D O I
10.1109/cset.2019.8904894
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In cloud computing, security risks posed to individual clients are different based on their specific security requirements. In current practice, cloud providers usually apply generic protection mechanisms that may not be effective in addressing specific threats for different clients. In this paper, we describe a tool, called `ThreatRiskEvaluator' that assesses security risks that are specific and relevant to specific cloud clients. The tool implements a novel risk analysis mechanism that utilizes various security-related properties of the cloud such as vulnerability information, the probability of an attack, as well as client-specific security requirements. The method enables cloud providers to make fine-grained decisions for selecting specific protection mechanisms to tackle specific risks posed to individual clients based on their security needs against specific threats.
引用
收藏
页数:6
相关论文
共 50 条
  • [1] Threat-Specific Security Risk Evaluation in the Cloud
    Roobini, M. S.
    TejaSatyanrayana, B.
    SaiVenkataGirish, B.
    Sridevi, N.
    Pothumani, S.
    2024 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATION AND APPLIED INFORMATICS, ACCAI 2024, 2024,
  • [2] Threat-Specific Security Risk Evaluation in the Cloud
    Nhlabatsi, Armstrong
    Hong, Jin B.
    Kim, Dong Seong
    Fernandez, Rachael
    Hussein, Alaa
    Fetais, Noora
    Khan, Khaled M.
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2021, 9 (02) : 793 - 806
  • [3] SpiralSRA: A Threat-Specific Security Risk Assessment Framework for the Cloud
    Nhlabatsi, Armstrong
    Hong, Jin B.
    Kim, Dong Seong
    Fernandez, Rachael
    Fetais, Noora
    Khan, Khaled M.
    2018 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY (QRS 2018), 2018, : 367 - 374
  • [4] Centralized gaze as a threat-specific component of defensive states in humans
    Merscher, Alma-Sophia
    Gamer, Matthias
    JOURNAL OF NEURAL TRANSMISSION, 2021, 128 (11) : 1780 - 1780
  • [5] Assessing security risks
    Catanese, Joseph
    Waste Age, 2002, 33 (06):
  • [6] Freezing of Gaze in Anticipation of Avoidable Threat A threat-specific proxy for freezing-like behavior in humans
    Merscher, Alma-Sophia
    Gamer, Matthias
    ETRA 2020 SHORT PAPERS: ACM SYMPOSIUM ON EYE TRACKING RESEARCH & APPLICATIONS, 2020,
  • [7] Children With Fragile X Syndrome Display Threat-Specific Biases Toward Emotion
    Burris, Jessica L.
    Barry-Anwar, Ryan A.
    Sims, Riley N.
    Hagerman, Randi J.
    Tassone, Flora
    Rivera, Susan M.
    BIOLOGICAL PSYCHIATRY-COGNITIVE NEUROSCIENCE AND NEUROIMAGING, 2017, 2 (06) : 487 - 492
  • [8] ERP correlates of attentional processing in spider fear: evidence of threat-specific hypervigilance
    Venetacci, Rebecca
    Johnstone, Amber
    Kirkby, Kenneth C.
    Matthews, Allison
    COGNITION & EMOTION, 2018, 32 (03) : 437 - 449
  • [9] The Security Risks of Cloud Computing
    Choi, Myeonggil
    2019 22ND IEEE INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND ENGINEERING (IEEE CSE 2019) AND 17TH IEEE INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING (IEEE EUC 2019), 2019, : 330 - 330
  • [10] Antipredator Behavior in Desmognathus ochrophaeus: Threat-Specific Responses to Chemical Stimuli in a Foraging Context
    Johnson, Elyse C.
    Sullivan, Aaron M.
    ETHOLOGY, 2014, 120 (07) : 672 - 680