Trustworthy Refinement Through Intrusion-Aware Design

Robert J. Ellison & Andrew P. Moore
High confidence in a system's survivability requires an accurate understanding of the system's threat environment and the impact of that environment on system operations. Unfortunately, existing development methods for secure and survivable information systems often have a patchwork approach in which the focus is on deciding which popular security components to integrate rather than making a rational assessment of how to address the attacks that are likely to compromise the overall mission. This report proposes...
This data repository is not currently reporting usage information. For information on how your repository can submit usage information, please see our documentation.