Modeling and quantitatively predicting software security based on stochastic Petri nets

Modeling and quantitatively predicting software security based on stochastic Petri nets

0.00 Avg rating0 Votes
Article ID: iaor201111203
Volume: 55
Issue: 1-2
Start Page Number: 102
End Page Number: 112
Publication Date: Jan 2012
Journal: Mathematical and Computer Modelling
Authors: , , ,
Keywords: security, stochastic processes
Abstract:

To quantitatively predict software security in the design phase, hierarchical software security modeling and evaluation methods are proposed based on Stochastic Petri Nets (SPNs). Hierarchical methods mitigate the state‐space explosion problem in SPNs. An isomorphic Markov Chain (MC) is obtained from the component SPN model. The security prediction value is calculated based on the probability distribution of the MC in the steady state. A sensitivity analysis method is proposed through evaluating the derivative of the security evaluation prediction equation. It provides a means to identify and trace back to the critical components for security enhancing. Security prediction and sensitivity analysis in the design phase provide the possibility to investigate and compare different solutions to the target system before realization. A case study shows the applicability and feasibility of our method.

Reviews

Required fields are marked *. Your email address will not be published.