標題: Software Vulnerability Patch Management with Semi-Markov Decision Process
作者: Huang, Chien-Cheng
Farn, Kwo-Jean
Lin, Feng-Yu
Lin, Frank Yeong-Sung
資訊管理與財務金融系 註:原資管所+財金所
Department of Information Management and Finance
關鍵字: Software vulnerability;patch management;arrival time;stochastic Petri nets;semi-Markov decision process
公開日期: 1-十一月-2013
摘要: Information security incidents frequency has been increasing dramatically, the aim of this study is to analyze the state-space reachability problems through the transition of vulnerable status after the informative system vulnerability exposure. In this research we took into consideration the time factor to analyze the arrival time to reachable states problem discussed in stochastic Petri nets. The mean arrival time and variance of the process between starting from an initial state and arriving at reachable states. We will therefore elaborate a novel model based on the semi-Markov stochastic Petri nets model for analyzing the period between the exposure of the vulnerability and the completion of its patch. We use the semi-Markov process to analyze the state-space reachability problems of the stochastic Petri nets, resulting in a novel model for software vulnerability patch management. Moreover, we include also the concept of discounted multi-objective semi-Markov decision process to obtain the total of the efficient extreme point set.
URI: http://dx.doi.org/10.12785/amis/070640
http://hdl.handle.net/11536/23890
ISSN: 2325-0399
DOI: 10.12785/amis/070640
期刊: APPLIED MATHEMATICS & INFORMATION SCIENCES
Volume: 7
Issue: 6
起始頁: 2467
結束頁: 2476
顯示於類別:期刊論文