Title :
The Security Implication of Multiple Observers in a Distributed System
Author :
Ditch, Derek P. ; McMillin, Bruce M.
Author_Institution :
Dept. of Comput. Sci., Missouri Univ. of Sci. & Technol., Rolla, MO, USA
Abstract :
Confidentiality is an often overlooked, yet crucial point in the security analysis of a system. infrastructures take for granted that confidentiality is maintained through obfuscation by dissemination of information. This dissemination does indeed maintain the confidentiality of the system when only a small portion of the information can be obtained by an outside observer. However, when multiple observers collaboratively make observations, the confidential information can be revealed or even just partially revealed. If a team of attackers on a system can deduce enough information to successfully perform a crippling attack, the system could not be considered secure. This paper will bring together facets of graph theory, electrical physics, and statistics to illustrate how a team of attackers could compromise a partially deducible system. The infrastructure considered in this paper is a power transmission systems, but these techniques could be applied to any system which could be modeled as a resistance network; including traffic systems, oil and gas pipelines, or even a large scale computer network.
Keywords :
distributed processing; graph theory; security of data; statistical analysis; confidential information; confidentiality; crippling attack; distributed system; electrical physics; gas pipeline; graph theory; information dissemination; large scale computer network; multiple observer; oil pipeline; partially deducible system; power transmission system; resistance network; security analysis; security implication; statistics; traffic system; Collaboration; Electric resistance; Graph theory; Information analysis; Information security; Physics; Power system modeling; Power transmission; Statistics; Telecommunication traffic; confidentiality; cyber-physical system; information security; partial deducibility; power system;
Conference_Titel :
Computer Software and Applications Conference, 2009. COMPSAC '09. 33rd Annual IEEE International
Conference_Location :
Seattle, WA
Print_ISBN :
978-0-7695-3726-9
DOI :
10.1109/COMPSAC.2009.157