Methods and tools for intrusion-aware software systems
Methods and tools for intrusion-aware software systems
批准号:
262758-2007
负责人:
Zulkernine, Mohammad
金额:
$1.53万
依托单位:
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2007
资助国家:
加拿大
项目状态:
已结题
起止时间:
2007-01-01 至 2008-12-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Software systems must be engineered with reliable protection mechanisms, while still delivering the expected value of the software within the budgeted cost and time. The principal obstacle in achieving these two different but interdependent objectives is that current software engineering processes do not provide adequate methods and tools to achieve security goals. As a result, security loopholes often leave the system vulnerable to malicious attacks and abuses. In this research, various methods and tools will be developed with a view to building intrusion-aware software systems. Available software specification languages are not completely suitable for specifying security related aspects of software, while attack languages are not useful for software development. The use of two different languages for software specification and security specification involves a number of unwanted but complicated issues. This research will focus on the factors related to the limitations of the existing intrusion scenario description mechanisms and the corresponding intrusion detectors, and will design ways to overcome them. A specification method will be proposed which can be used to specify both normal operational behavior and the behavior of the target when it is under known attack. Formal syntax and semantics of the features required for intrusion scenario specifications will be provided. Tools will be built for intrusion scenario description and automatic signature generation from the scenarios. Finally, intrusion detection systems will be developed to detect any intrusions into the software systems by comparing the run-time behavior of the systems with the generated signatures. This research will play a vital role in bridging the gap between software engineering and security engineering practices. One of the unique aspects of this research proposal is to provide a balanced training facility for graduate students (2 PhD and 2 MSc) including both software engineering and security engineering principles for building secure software products.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Building and Monitoring Security in Emerging Softwarized Systems
-
批准号:RGPIN-2020-03980
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$4.01万
-
财政年份:2022
-
负责人:Zulkernine, Mohammad
-
依托单位:
Building and Monitoring Security in Emerging Softwarized Systems
-
批准号:RGPIN-2020-03980
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$4.01万
-
财政年份:2021
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability And Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$3.64万
-
财政年份:2021
-
负责人:Zulkernine, Mohammad
-
依托单位:
Building and Monitoring Security in Emerging Softwarized Systems
-
批准号:RGPIN-2020-03980
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$4.01万
-
财政年份:2020
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability and Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2020
-
负责人:Zulkernine, Mohammad
-
依托单位:
Secure cloud computing for connected vehicles
-
批准号:506546-2017
-
项目类别:Strategic Projects - Group
-
资助金额:$13.0万
-
财政年份:2019
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability and Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2019
-
负责人:Zulkernine, Mohammad
-
依托单位:
Integrating and Monitoring Security in Software Applications
-
批准号:RGPIN-2019-04651
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.48万
-
财政年份:2019
-
负责人:Zulkernine, Mohammad
-
依托单位:
Secure cloud computing for connected vehicles
-
批准号:506546-2017
-
项目类别:Strategic Projects - Group
-
资助金额:$13.08万
-
财政年份:2018
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability and Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2018
-
负责人:Zulkernine, Mohammad
-
依托单位:
Build and Watch: Towards Intrusion-Aware Software Systems
-
批准号:RGPIN-2014-04294
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.89万
-
财政年份:2018
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability and Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2017
-
负责人:Zulkernine, Mohammad
-
依托单位:
Secure cloud computing for connected vehicles
-
批准号:506546-2017
-
项目类别:Strategic Projects - Group
-
资助金额:$12.93万
-
财政年份:2017
-
负责人:Zulkernine, Mohammad
-
依托单位:
Build and Watch: Towards Intrusion-Aware Software Systems
-
批准号:RGPIN-2014-04294
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.89万
-
财政年份:2017
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Dependability
-
批准号:1000226985-2011
-
项目类别:Canada Research Chairs
-
资助金额:$3.64万
-
财政年份:2016
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Reliability and Security
-
批准号:CRC-2016-00203
-
项目类别:Canada Research Chairs
-
资助金额:$3.64万
-
财政年份:2016
-
负责人:Zulkernine, Mohammad
-
依托单位:
Build and Watch: Towards Intrusion-Aware Software Systems
-
批准号:RGPIN-2014-04294
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.89万
-
财政年份:2016
-
负责人:Zulkernine, Mohammad
-
依托单位:
Build and Watch: Towards Intrusion-Aware Software Systems
-
批准号:RGPIN-2014-04294
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.89万
-
财政年份:2015
-
负责人:Zulkernine, Mohammad
-
依托单位:
Software Dependability
-
批准号:1226985-2011
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2015
-
负责人:Zulkernine, Mohammad
-
依托单位:
Build and Watch: Towards Intrusion-Aware Software Systems
-
批准号:RGPIN-2014-04294
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$1.89万
-
财政年份:2014
-
负责人:Zulkernine, Mohammad
-
依托单位:
海外基金