Virtual Patching Containment Strategy of Internet Worm Modeling and Analysis

Article Preview

Abstract:

Worms can spread quickly through the network and infect large number of vulnerable hosts in the initial stage causing great loss. The worms are tested and revised for many times aiming at avoiding being detected and eliminated by the security products, and the security software cant be updated immediately for the reason that it costs time to build the new patching before the patching is released. However, the virtual patching strategy can protect the vulnerable hosts from the attacks of the worms before the security products release the new real patching. A new propagation model of worms with virtual patching strategy is thus proposed in this paper for the first time. Through the analysis of the corresponding worm propagation model, its stability condition of worm-free equilibrium point is obtained. And through the numerical analysis, the effectiveness of the virtual patching strategy is shown. This model is more consistent with the actual situation of the worm propagation, and the virtual patching strategy will provide a new insight into the modeling of computer virus propagation.

You might also be interested in these eBooks

Info:

Periodical:

Pages:

2216-2220

Citation:

Online since:

August 2013

Export:

Price:

Permissions CCC:

Permissions PLS:

Сopyright:

© 2013 Trans Tech Publications Ltd. All Rights Reserved

Share:

Citation:

[1] Barnett R. Waf virtual patching challenge: Securing webgoat with modsecurity[J]. Breach Security, (2009).

Google Scholar

[2] Zou CC, Gong WB, Towsley D. Worm propagation modeling and analysis under dynamic quarantine defense. In: Proceedings of the 2003 ACM workshop on rapid malcode (WORM 2003). Washington, DC, USA; 2003. p.51–60.

DOI: 10.1145/948187.948197

Google Scholar

[3] Chen TM, Jamil N. Effectiveness of quarantine in worm epidemics. In: Proceedings of 2006 IEEE international conference on communications (ICC2006); 2006. p.2142–7.

DOI: 10.1109/icc.2006.255087

Google Scholar

[4] Aberdeen Group, The Virtues of Virtual Patching, (2012).

Google Scholar

[5] OGREN, Virtual Patching a Proven Cost Savings Strategy, (2012).

Google Scholar

[6] Honeywell, Virtual Patching Building Block: Increased Protection and Reduced Maintenance for Process Control Systems, (2011).

Google Scholar

[7] Micro T., Virtual Patching: Lower Security Risks and Costs[J], (2012).

Google Scholar