A New Vulnerability Taxonomy Based on Privilege Escalation

Computer security vulnerabilities badly compromise the system security. To profoundly understand the causes of known vulnerabilities and prevent them, this paper develops a new taxonomic character, and then integrates a privilege-escalating based vulnerability taxonomy with multidimensional quantitative attribute. This taxonomy greatly contributes to further researches of security risk assessment of computer system.

[1]  Eugene H. Spafford,et al.  Use of A Taxonomy of Security Faults , 1996 .

[2]  George Gaylord Simpson,et al.  Principles of Animal Taxonomy , 1961 .

[3]  Robert L. Glass,et al.  Contemporary Application-Domain Taxonomies , 1995, IEEE Softw..

[4]  Matt Bishop,et al.  A Critical Analysis of Vulnerability Taxonomies , 1996 .

[5]  Marvin V. Zelkowitz,et al.  Maintaining software with a security perspective , 2002, International Conference on Software Maintenance, 2002. Proceedings..