A Self-protecting Approach for Service-oriented Mobile Applications
Autor(a) principal: | |
---|---|
Data de Publicação: | 2021 |
Outros Autores: | , , , , , , , |
Tipo de documento: | Artigo de conferência |
Idioma: | eng |
Título da fonte: | Repositório Institucional da UNESP |
Texto Completo: | http://dx.doi.org/10.5220/0010448603130320 http://hdl.handle.net/11449/237713 |
Resumo: | The evolution of software systems in the last 10 years has brought new challenges for the development area, especially for service-oriented Mobile Applications (MobApps). In the mobile computing domain, the integration of MobApps into service-based systems has been a feasible alternative to boost the capacity of processing and storage of such applications. In parallel, this type of application needs monitoring approaches mainly due to the need of dealing with a large number of users, continuous changes in the execution environment, and security threats. Besides that, most MobApps do not present the self-protecting property by default, resulting in a number of adverse situations, such as integrity of execution, reliability, security, and adaptations at runtime. The principal contribution of this paper is an approach based on MAPE-K (Monitor-Analyze-Plan-Execute over Knowledge) loop and machine learning techniques to ensure self-protecting features in MobApps, in particular, those based on services. Experimental results showed that this approach can autonomously and dynamically mitigate threats, making these applications more trustworthy and intrusion-safe. Our approach has good potential to contribute to the development of MobApps, going beyond existing approaches. |
id |
UNSP_f86344b3e4cf25ab6d2a4e4a7628fa93 |
---|---|
oai_identifier_str |
oai:repositorio.unesp.br:11449/237713 |
network_acronym_str |
UNSP |
network_name_str |
Repositório Institucional da UNESP |
repository_id_str |
2946 |
spelling |
A Self-protecting Approach for Service-oriented Mobile ApplicationsSelf-protectingMobile ApplicationsWeb ServiceSecurityThe evolution of software systems in the last 10 years has brought new challenges for the development area, especially for service-oriented Mobile Applications (MobApps). In the mobile computing domain, the integration of MobApps into service-based systems has been a feasible alternative to boost the capacity of processing and storage of such applications. In parallel, this type of application needs monitoring approaches mainly due to the need of dealing with a large number of users, continuous changes in the execution environment, and security threats. Besides that, most MobApps do not present the self-protecting property by default, resulting in a number of adverse situations, such as integrity of execution, reliability, security, and adaptations at runtime. The principal contribution of this paper is an approach based on MAPE-K (Monitor-Analyze-Plan-Execute over Knowledge) loop and machine learning techniques to ensure self-protecting features in MobApps, in particular, those based on services. Experimental results showed that this approach can autonomously and dynamically mitigate threats, making these applications more trustworthy and intrusion-safe. Our approach has good potential to contribute to the development of MobApps, going beyond existing approaches.UNESP's ProRectory of Research (PROPe/UNESP)Fundação de Amparo à Pesquisa do Estado de São Paulo (FAPESP)Fundação para o Desenvolvimento da UNESP (FUNDUNESP)LINEASSao Paulo State Univ UNESP, Dept Stat Appl Math & Computat, POB 178, BR-13506900 Rio Claro, SP, BrazilSao Paulo State Univ UNESP, Dept Stat Appl Math & Computat, POB 178, BR-13506900 Rio Claro, SP, BrazilFAPESP: 2019/21510-3FUNDUNESP: 2017/00502-7FUNDUNESP: 5850.0102453.16.9ScitepressUniversidade Estadual Paulista (UNESP)Martins, Ronaldo Rodrigues [UNESP]Camargo, Marcos Paulo de Oliveira [UNESP]Passini, William Filisbino [UNESP]Campos, Gabriel Nagassaki [UNESP]Affonso, Frank Jose [UNESP]Filipe, J.Smialek, M.Brodsky, A.Hammoudi, S.2022-11-30T13:42:38Z2022-11-30T13:42:38Z2021-01-01info:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/conferenceObject313-320http://dx.doi.org/10.5220/0010448603130320Iceis: Proceedings Of The 23rd International Conference On Enterprise Information Systems - Vol 2. Setubal: Scitepress, p. 313-320, 2021.2184-4992http://hdl.handle.net/11449/23771310.5220/0010448603130320WOS:000783951300031Web of Sciencereponame:Repositório Institucional da UNESPinstname:Universidade Estadual Paulista (UNESP)instacron:UNESPengIceis: Proceedings Of The 23rd International Conference On Enterprise Information Systems - Vol 2info:eu-repo/semantics/openAccess2022-11-30T13:42:38Zoai:repositorio.unesp.br:11449/237713Repositório InstitucionalPUBhttp://repositorio.unesp.br/oai/requestopendoar:29462024-08-05T14:21:13.681678Repositório Institucional da UNESP - Universidade Estadual Paulista (UNESP)false |
dc.title.none.fl_str_mv |
A Self-protecting Approach for Service-oriented Mobile Applications |
title |
A Self-protecting Approach for Service-oriented Mobile Applications |
spellingShingle |
A Self-protecting Approach for Service-oriented Mobile Applications Martins, Ronaldo Rodrigues [UNESP] Self-protecting Mobile Applications Web Service Security |
title_short |
A Self-protecting Approach for Service-oriented Mobile Applications |
title_full |
A Self-protecting Approach for Service-oriented Mobile Applications |
title_fullStr |
A Self-protecting Approach for Service-oriented Mobile Applications |
title_full_unstemmed |
A Self-protecting Approach for Service-oriented Mobile Applications |
title_sort |
A Self-protecting Approach for Service-oriented Mobile Applications |
author |
Martins, Ronaldo Rodrigues [UNESP] |
author_facet |
Martins, Ronaldo Rodrigues [UNESP] Camargo, Marcos Paulo de Oliveira [UNESP] Passini, William Filisbino [UNESP] Campos, Gabriel Nagassaki [UNESP] Affonso, Frank Jose [UNESP] Filipe, J. Smialek, M. Brodsky, A. Hammoudi, S. |
author_role |
author |
author2 |
Camargo, Marcos Paulo de Oliveira [UNESP] Passini, William Filisbino [UNESP] Campos, Gabriel Nagassaki [UNESP] Affonso, Frank Jose [UNESP] Filipe, J. Smialek, M. Brodsky, A. Hammoudi, S. |
author2_role |
author author author author author author author author |
dc.contributor.none.fl_str_mv |
Universidade Estadual Paulista (UNESP) |
dc.contributor.author.fl_str_mv |
Martins, Ronaldo Rodrigues [UNESP] Camargo, Marcos Paulo de Oliveira [UNESP] Passini, William Filisbino [UNESP] Campos, Gabriel Nagassaki [UNESP] Affonso, Frank Jose [UNESP] Filipe, J. Smialek, M. Brodsky, A. Hammoudi, S. |
dc.subject.por.fl_str_mv |
Self-protecting Mobile Applications Web Service Security |
topic |
Self-protecting Mobile Applications Web Service Security |
description |
The evolution of software systems in the last 10 years has brought new challenges for the development area, especially for service-oriented Mobile Applications (MobApps). In the mobile computing domain, the integration of MobApps into service-based systems has been a feasible alternative to boost the capacity of processing and storage of such applications. In parallel, this type of application needs monitoring approaches mainly due to the need of dealing with a large number of users, continuous changes in the execution environment, and security threats. Besides that, most MobApps do not present the self-protecting property by default, resulting in a number of adverse situations, such as integrity of execution, reliability, security, and adaptations at runtime. The principal contribution of this paper is an approach based on MAPE-K (Monitor-Analyze-Plan-Execute over Knowledge) loop and machine learning techniques to ensure self-protecting features in MobApps, in particular, those based on services. Experimental results showed that this approach can autonomously and dynamically mitigate threats, making these applications more trustworthy and intrusion-safe. Our approach has good potential to contribute to the development of MobApps, going beyond existing approaches. |
publishDate |
2021 |
dc.date.none.fl_str_mv |
2021-01-01 2022-11-30T13:42:38Z 2022-11-30T13:42:38Z |
dc.type.status.fl_str_mv |
info:eu-repo/semantics/publishedVersion |
dc.type.driver.fl_str_mv |
info:eu-repo/semantics/conferenceObject |
format |
conferenceObject |
status_str |
publishedVersion |
dc.identifier.uri.fl_str_mv |
http://dx.doi.org/10.5220/0010448603130320 Iceis: Proceedings Of The 23rd International Conference On Enterprise Information Systems - Vol 2. Setubal: Scitepress, p. 313-320, 2021. 2184-4992 http://hdl.handle.net/11449/237713 10.5220/0010448603130320 WOS:000783951300031 |
url |
http://dx.doi.org/10.5220/0010448603130320 http://hdl.handle.net/11449/237713 |
identifier_str_mv |
Iceis: Proceedings Of The 23rd International Conference On Enterprise Information Systems - Vol 2. Setubal: Scitepress, p. 313-320, 2021. 2184-4992 10.5220/0010448603130320 WOS:000783951300031 |
dc.language.iso.fl_str_mv |
eng |
language |
eng |
dc.relation.none.fl_str_mv |
Iceis: Proceedings Of The 23rd International Conference On Enterprise Information Systems - Vol 2 |
dc.rights.driver.fl_str_mv |
info:eu-repo/semantics/openAccess |
eu_rights_str_mv |
openAccess |
dc.format.none.fl_str_mv |
313-320 |
dc.publisher.none.fl_str_mv |
Scitepress |
publisher.none.fl_str_mv |
Scitepress |
dc.source.none.fl_str_mv |
Web of Science reponame:Repositório Institucional da UNESP instname:Universidade Estadual Paulista (UNESP) instacron:UNESP |
instname_str |
Universidade Estadual Paulista (UNESP) |
instacron_str |
UNESP |
institution |
UNESP |
reponame_str |
Repositório Institucional da UNESP |
collection |
Repositório Institucional da UNESP |
repository.name.fl_str_mv |
Repositório Institucional da UNESP - Universidade Estadual Paulista (UNESP) |
repository.mail.fl_str_mv |
|
_version_ |
1808128350732943360 |