Towards a Cloud-Based Ontology for Service Model Security – Technical Report

08/14/2023
by   Mohammed Kharma, et al.
0

The adoption of cloud computing has brought significant advancements in the operational models of businesses. However, this shift also brings new security challenges by expanding the attack surface. The offered services in cloud computing have various service models. Each cloud service model has a defined responsibility divided based on the stack layers between the service user and their cloud provider. Regardless of its service model, each service is constructed from sub-components and services running on the underlying layers. In this paper, we aim to enable more transparency and visibility by designing an ontology that links the provider's services with the sub-components used to deliver the service. Such breakdown for each cloud service sub-components enables the end user to track the vulnerabilities on the service level or one of its sub-components. Such information can result in a better understanding and management of reported vulnerabilities on the sub-components level and their impact on the offered services by the cloud provider. Our ontology and source code are published as an open-source and accessible via GitHub: \href{https://github.com/mohkharma/cc-ontology}{mohkharma/cc-ontology}

READ FULL TEXT
research
07/10/2023

Cloud Render Farm Services Discovery Using NLP And Ontology Based Knowledge Graph

Cloud render farm services are the animation domain specific cloud servi...
research
04/16/2019

Cloud Service ranking using Checkpoint based Load balancing in real time scheduling of Cloud Computing

Cloud computing has been gaining popularity in the recent years. Several...
research
04/12/2018

QRES: Quantitative Reasoning on Encrypted Security SLAs

While regulators advocate for higher cloud transparency, many Cloud Serv...
research
06/14/2022

Cloud Property Graph: Connecting Cloud Security Assessments with Static Code Analysis

In this paper, we present the Cloud Property Graph (CloudPG), which brid...
research
12/02/2017

A survey study on major technical barriers affecting the decision to adopt cloud services

In the context of cloud computing, risks associated with underlying tech...
research
04/28/2023

Servo: Increasing the Scalability of Modifiable Virtual Environments Using Serverless Computing – Extended Technical Report

Online games with modifiable virtual environments (MVEs) have become hig...
research
07/12/2023

SAGE – A Tool for Optimal Deployments in Kubernetes Clusters

Cloud computing has brought a fundamental transformation in how organiza...

Please sign up or login with your details

Forgot password? Click here to reset