The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

Reports and Papers Archive


Browse All Papers »       Submit A Paper »
3498 results for "all"


On Defending Against Distributed Denial-of-service Attacks with Server-centric Router Throttles

CERIAS TR 2001-39
Feng Liang and David K. Y. Yau and John C. S. Lui
Download: PDF
Added 2002-07-26

Information assurance in networked enterprises: definition, requirements and experimental results

CERIAS TR 2001-34
Bellocci T., Ang C.B., Ray P. and Nof S.Y.
Download: PDF

With the dramatic growth of information exchanges within and between organizations, major concerns emerge about the assurance of information.  Without clear knowledge of the true needs for information assurance, a company may employ local, specialized solutions that are too restrictive, or nor comprehensive.  On the other hand, cost-effective, variable integrity and variable security may be economically justifiable and adequate for ertain situations and decisions.  Therefore, a new definition of information assurane has been developed following the TQM approach.  It describes assurance as a combination of information security, integrity, and significance. The requirements of information assurance are presented and have been justified on the basis of concrete results obtained from the lab experiments that were conducted.  The exeriments and results have been briefly discussed in this paper.

Added 2002-07-26

Information assurance: MICSS Lab experiments, results and analysis

CERIAS TR 2001-35
Bellocci T., Ray P. and Nof S.Y.
Download: PDF

A lab experiment has been perfrmed using an ERP simulator to study the impact of information failure on the results of a company.  Two scenerios have been considered: correct but delayed information, and wrong information.  The influence of the length of delay, of the error size, and of the dataet concerned by the failure have also been studied.  It follows from the analysis that: -The consequences of a given information failure depend on the dataset in which the failure occurs. -For a given dataset, information failures impact depends on the failure type. -The influence of the length of delay depends on the dataset. -The influence of the error size depends on the dataset. So far companies employ local, specialized solutions that are too restrictive, or not compehensive.  The experiments presented in this paper justify economically the use of solutions with variable assurance in ERP sysems.  They also provide directions for the design of autonomous agents to handle these assurance problems.

Added 2002-07-26


Information assurance: MICSS Class experiments, and industry survey conclusions

CERIAS TR 2001-37
Ray P., Bellocci T. and Nof S.Y.
Download: PDF
Added 2002-07-26

Information assurance: MICSS Class experiments, analysis and conclusions

CERIAS TR 2001-38
Ray P., Bellocci T. and Nof S.Y.
Download: PDF
Added 2002-07-26

Hacker Challenges in Security Product Testing

Eugene Spafford
Added 2002-07-26

State of the Practice of Intrusion Detection Technologies

Julia Allen, Alan Christie, William Fithen, John McHugh, Jed Pickel, Ed Stoner
Added 2002-07-26

On the Effectiveness of Route-Based Packet Filtering for Distributed DoS Attack Prevention in Power-Law Internets

CERIAS TR 2001-40
Kihong Park and Heejo Lee
Download: PDF

Denial of service (DoS)attack on the Internet has become a pressing problem.In this paper,we describe and evaluate route-based distributed packet .ltering (DPF),a novel ap- proach to distributed DoS (DDoS)attack prevention.We show that DPF achieves proactiveness and scalability,and we show that there is an intimate relationship between the e .ectiveness of DPF at mitigating DDoS attack and power- law network topology.

Added 2002-07-26

Reply to \'Comment on \"A Framework for Modelling Trojans and Computer Viris Infection\"\' by E. Makinen

H. Thimbleby, S. O. Anderson, P. A. Cairns

Computer viruses are a worrying real-world problem, and a challenge to theoretical modelling. In this issue of the \‘Computer Journal\’, Erkki Makinen proposes universal machines in a critique of an earlier paper, \“A Framework for Modelling Trojans and Computer Viris Infection\” (H. Thimbleby, S. O. Anderson and P. A. Cairns, Comp. J., 41(7):444-458, 1999). This short paper is a reply by those authors.

Added 2002-07-26

A Study Of Several Specific Secure Two-Party Computation Problems

CERIAS TR 2001-43
Wenliang Du
Download: PDF

Alice has a private input x (of any data type, such as a number, a matrix or a data set). Bob has another private input y. Alice and Bob want to cooperatively conduct a specific computation on x and y without disclosing to the other person any information about her or his private input except for what could be derived from the results. This problem is a Secure Two-party Computation (STC) problem, which has been extensively studied in the past. Several generic solutions have been proposed to solve the general STC problem; however the generic solutions are often too inefficient to be practical. Therefore, in this dissertation, we study several specific STC problems with the goal of finding more efficient solutions than the generic ones.

We introduce a number of specific STC problems in the domains of scientific computation, statistical analysis, computational geometry and database query. Most of the problems have not been studied before in the literature.

Added 2002-07-26

A Framework for Modelling Trojans and Computer Virus Infection

Harold Thimbleby, Stuart Anderson, Paul Cairns

It is not possible to view a computer operating in the real world, including the possibility of Trojan Horse programs and computer viruses, as simply a finite realisation of a Turing Machine.  We consider the actions of Trojan Horses and viruses in real computer systems and suggest a minimal framework for an adequate formal understanding of the phenomena. Some conventional approaches, including biological metaphors, are shown to be inadequate; some suggestions are made towards constructing virally-resistant systems.

Added 2002-07-26

The Effects of Computer Viruses on Disaster Recovery Model Development

Paul Gerard LeDuc

The purpose of the study was to determine the effect of computer viruses on disaster recovery model development.  Through a review of the literature and careful thought, the Susceptibilities/Assets/Frequencies and Expected Value Model was developed. The design of this model is unique in that it addresses the threat of computer viruses to organizational computing resources. The model consists of two concrrent processes. These processes are the management process and the prevention recovery process.  The S.A.F.E. Model is inended to function as a tool that guides and organization through the systematic assessment of areas that are essential to the development of viral recovery strategies within the organization. Computer viruses are a dynamic threat.  The S.A.F.E. Model represents an attempt to outline a process that can be utilized to develop prevention and recovery strategies to cope with this threat.

Added 2002-07-26