Multilevel classification of security concerns in cloud computing

Threats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud ser...

Full description

Bibliographic Details
Main Authors: Syed Asad Hussain, Mehwish Fatima, Atif Saeed, Imran Raza, Raja Khurram Shahzad
Format: Article
Language:English
Published: Emerald Publishing 2017-01-01
Series:Applied Computing and Informatics
Subjects:
Online Access:http://www.sciencedirect.com/science/article/pii/S2210832716300011
id doaj-78c0a61bfeaa4dbbb52e56667064e28e
record_format Article
spelling doaj-78c0a61bfeaa4dbbb52e56667064e28e2020-11-25T03:19:38ZengEmerald PublishingApplied Computing and Informatics2210-83272017-01-01131576510.1016/j.aci.2016.03.001Multilevel classification of security concerns in cloud computingSyed Asad Hussain0Mehwish Fatima1Atif Saeed2Imran Raza3Raja Khurram Shahzad4Department of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanDepartment of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanSchool of Computing and Communications, Lancaster University, Lancaster, United KingdomDepartment of Computer Science, COMSATS Institute of Information Technology Lahore, PakistanSchool of Computing, Blekinge Institute of Technology, SwedenThreats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud services at each layer. It also identifies attack types and risk levels associated with different cloud services at these layers. The risks are ranked as low, medium and high. The intensity of these risk levels depends upon the position of cloud layers. The attacks get more severe for lower layers where infrastructure and platform are involved. The intensity of these risk levels is also associated with security requirements of data encryption, multi-tenancy, data privacy, authentication and authorization for different cloud services. The multilevel classification model leads to the provision of dynamic security contract for each cloud layer that dynamically decides about security requirements for cloud consumer and provider.http://www.sciencedirect.com/science/article/pii/S2210832716300011Cloud computingSecurityVirtualizationSaaSPaaSIaaS
collection DOAJ
language English
format Article
sources DOAJ
author Syed Asad Hussain
Mehwish Fatima
Atif Saeed
Imran Raza
Raja Khurram Shahzad
spellingShingle Syed Asad Hussain
Mehwish Fatima
Atif Saeed
Imran Raza
Raja Khurram Shahzad
Multilevel classification of security concerns in cloud computing
Applied Computing and Informatics
Cloud computing
Security
Virtualization
SaaS
PaaS
IaaS
author_facet Syed Asad Hussain
Mehwish Fatima
Atif Saeed
Imran Raza
Raja Khurram Shahzad
author_sort Syed Asad Hussain
title Multilevel classification of security concerns in cloud computing
title_short Multilevel classification of security concerns in cloud computing
title_full Multilevel classification of security concerns in cloud computing
title_fullStr Multilevel classification of security concerns in cloud computing
title_full_unstemmed Multilevel classification of security concerns in cloud computing
title_sort multilevel classification of security concerns in cloud computing
publisher Emerald Publishing
series Applied Computing and Informatics
issn 2210-8327
publishDate 2017-01-01
description Threats jeopardize some basic security requirements in a cloud. These threats generally constitute privacy breach, data leakage and unauthorized data access at different cloud layers. This paper presents a novel multilevel classification model of different security attacks across different cloud services at each layer. It also identifies attack types and risk levels associated with different cloud services at these layers. The risks are ranked as low, medium and high. The intensity of these risk levels depends upon the position of cloud layers. The attacks get more severe for lower layers where infrastructure and platform are involved. The intensity of these risk levels is also associated with security requirements of data encryption, multi-tenancy, data privacy, authentication and authorization for different cloud services. The multilevel classification model leads to the provision of dynamic security contract for each cloud layer that dynamically decides about security requirements for cloud consumer and provider.
topic Cloud computing
Security
Virtualization
SaaS
PaaS
IaaS
url http://www.sciencedirect.com/science/article/pii/S2210832716300011
work_keys_str_mv AT syedasadhussain multilevelclassificationofsecurityconcernsincloudcomputing
AT mehwishfatima multilevelclassificationofsecurityconcernsincloudcomputing
AT atifsaeed multilevelclassificationofsecurityconcernsincloudcomputing
AT imranraza multilevelclassificationofsecurityconcernsincloudcomputing
AT rajakhurramshahzad multilevelclassificationofsecurityconcernsincloudcomputing
_version_ 1724621113080676352