This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
2007 31st Annual International Computer Software and Applications Conference
ACIR: An Aspect-Connector for Intrusion Response
Beijing, China
July 24-July 27
ISBN: 0-7695-2870-8
Mohammad Gias Uddin, Queen?s University, Kingston, Ontario, Canada
Hossain Shahriar, Queen?s University, Kingston, Ontario, Canada
Mohammad Zulkernine, Queen?s University, Kingston, Ontario, Canada
The modularization concept behind component-based software (CBS) cannot be applied effectively for cross-cutting concerns such as security. Aspect-oriented programming (AOP) helps in better modularization by identifying crosscutting concerns and providing a suitable way to separate those concerns. In this paper, we provide an aspectconnector based intrusion response (detection and prevention) architecture for CBS by bringing the concepts of aspects into components. The aspect-connector is named as ACIR (Aspect Connector for Intrusion Response). Component interfaces act as join points, and aspects containing pointcuts and advices are defined in ACIR configuration file. Advices applicable to particular pointcuts are two types. Signature advices are used to detect intrusions, and action advices are executed to prevent intrusions. A prototype of this architecture is implemented and evaluated using some intrusions included in the Web Application Security Consortium (WASC) intrusion list. This approach detects and prevents intrusions in CBS while maintaining encapsulation, reusability, and modularity.
Citation:
Mohammad Gias Uddin, Hossain Shahriar, Mohammad Zulkernine, "ACIR: An Aspect-Connector for Intrusion Response," compsac, vol. 2, pp.249-254, 2007 31st Annual International Computer Software and Applications Conference, 2007
Usage of this product signifies your acceptance of the Terms of Use.