Multilevel classification of security concerns in cloud computing
Threats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud ser...
Main Authors: | , , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Emerald Publishing
2017-01-01
|
Series: | Applied Computing and Informatics |
Subjects: | |
Online Access: | http://www.sciencedirect.com/science/article/pii/S2210832716300011 |
id |
doaj-78c0a61bfeaa4dbbb52e56667064e28e |
---|---|
record_format |
Article |
spelling |
doaj-78c0a61bfeaa4dbbb52e56667064e28e2020-11-25T03:19:38ZengEmerald PublishingApplied Computing and Informatics2210-83272017-01-01131576510.1016/j.aci.2016.03.001Multilevel classification of security concerns in cloud computingSyed Asad Hussain0Mehwish Fatima1Atif Saeed2Imran Raza3Raja Khurram Shahzad4Department of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanDepartment of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanSchool of Computing and Communications, Lancaster University, Lancaster, United KingdomDepartment of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanSchool of Computing, Blekinge Institute of Technology, SwedenThreats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud services at each layer. It also identifies attack types and risk levels associated with different cloud services at these layers. The risks are ranked as low, medium and high. The intensity of these risk levels depends upon the position of cloud layers. The attacks get more severe for lower layers where infrastructure and platform are involved. The intensity of these risk levels is also associated with security requirements of data encryption, multi-tenancy, data privacy, authentication and authorization for different cloud services. The multilevel classification model leads to the provision of dynamic security contract for each cloud layer that dynamically decides about security requirements for cloud consumer and provider.http://www.sciencedirect.com/science/article/pii/S2210832716300011Cloud computingSecurityVirtualizationSaaSPaaSIaaS |
collection |
DOAJ |
language |
English |
format |
Article |
sources |
DOAJ |
author |
Syed Asad Hussain Mehwish Fatima Atif Saeed Imran Raza Raja Khurram Shahzad |
spellingShingle |
Syed Asad Hussain Mehwish Fatima Atif Saeed Imran Raza Raja Khurram Shahzad Multilevel classification of security concerns in cloud computing Applied Computing and Informatics Cloud computing Security Virtualization SaaS PaaS IaaS |
author_facet |
Syed Asad Hussain Mehwish Fatima Atif Saeed Imran Raza Raja Khurram Shahzad |
author_sort |
Syed Asad Hussain |
title |
Multilevel classification of security concerns in cloud computing |
title_short |
Multilevel classification of security concerns in cloud computing |
title_full |
Multilevel classification of security concerns in cloud computing |
title_fullStr |
Multilevel classification of security concerns in cloud computing |
title_full_unstemmed |
Multilevel classification of security concerns in cloud computing |
title_sort |
multilevel classification of security concerns in cloud computing |
publisher |
Emerald Publishing |
series |
Applied Computing and Informatics |
issn |
2210-8327 |
publishDate |
2017-01-01 |
description |
Threats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud services at each layer. It also identifies attack types and risk levels associated with different cloud services at these layers. The risks are ranked as low, medium and high. The intensity of these risk levels depends upon the position of cloud layers. The attacks get more severe for lower layers where infrastructure and platform are involved. The intensity of these risk levels is also associated with security requirements of data encryption, multi-tenancy, data privacy, authentication and authorization for different cloud services. The multilevel classification model leads to the provision of dynamic security contract for each cloud layer that dynamically decides about security requirements for cloud consumer and provider. |
topic |
Cloud computing Security Virtualization SaaS PaaS IaaS |
url |
http://www.sciencedirect.com/science/article/pii/S2210832716300011 |
work_keys_str_mv |
AT syedasadhussain multilevelclassificationofsecurityconcernsincloudcomputing AT mehwishfatima multilevelclassificationofsecurityconcernsincloudcomputing AT atifsaeed multilevelclassificationofsecurityconcernsincloudcomputing AT imranraza multilevelclassificationofsecurityconcernsincloudcomputing AT rajakhurramshahzad multilevelclassificationofsecurityconcernsincloudcomputing |
_version_ |
1724621113080676352 |