Programming Risk Assessment Models for Online Security Evaluation Systems

Risk assessment is often done by human experts, becausethere is no exact and mathematical solution to the problem.Usually the human reasoning and perception process cannotbe expressed precisely. This paper propose a geneticprogramming approach for risk assessment. Preliminaryresults indicate that genetic programming methods are robustand suitable for this problem when compared to otherrisk assessment models.

[1]  Ajith Abraham,et al.  Evolving Intrusion Detection Systems , 2006, Genetic Systems Programming.

[2]  Ajith Abraham,et al.  MEPIDS: Multi-Expression Programming for Intrusion Detection System , 2005, IWINAC.

[3]  Douglas J. Landoll,et al.  The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments , 2005 .

[4]  Svein J. Knapskog,et al.  HiNFRA: Hierarchical Neuro-Fuzzy Learning for Online Risk Assessment , 2008, 2008 Second Asia International Conference on Modelling & Simulation (AMS).

[5]  Václav Snásel,et al.  Survey: Using Genetic Algorithm Approach in Intrusion Detection Systems Techniques , 2008, 2008 7th Computer Information Systems and Industrial Management Applications.

[6]  Carlos Martín-Vide,et al.  Evolutionary Design of Intrusion Detection Programs , 2007, Int. J. Netw. Secur..

[7]  Michael O'Neill,et al.  Grammatical Evolution: Evolving Programs for an Arbitrary Language , 1998, EuroGP.

[8]  Thomas Peltier,et al.  Information Security Risk Analysis: A Pedagogic Model Based on a Teaching Hospital , 2006 .

[9]  Mihai Oltean,et al.  Evolving Evolutionary Algorithms Using Multi Expression Programming , 2003, ECAL.

[10]  Wolfgang Banzhaf,et al.  Explicit Control of Diversity and Effective Variation Distance in Linear Genetic Programming , 2002, EuroGP.

[11]  Svein J. Knapskog,et al.  Fuzzy Online Risk Assessment for Distributed Intrusion Prediction and Prevention Systems , 2008, Tenth International Conference on Computer Modeling and Simulation (uksim 2008).