针对主机上的恶意软件攻击进行存储保护的安全框架 |
ITU-T X.1220建议书提供了保护存储免受绕过网络保护和端点保护的主机恶意软件攻击的框架。该框架还考虑了由人为错误或社会工程引起的攻击。该框架由主机和存储保护服务器组成。存储保护服务器独立于主机工作,将数据存储在存储空间中,并为主机提供网络驱动。当主机上的应用程序请求数据时,存储保护服务器提供真实数据或伪造数据,具体取决于应用程序是否列在存储保护服务器上管理的预注册应用程序列表中,目的是保护存储中的数据免受加密、篡改或窃取数据的恶意软件攻击。存储保护服务器允许预注册的应用程序创建、修改或删除存储中的数据,同时防止其他应用程序执行这些操作。它为预注册的应用程序提供从存储中获取真实数据的读写访问权限,并为未注册的应用程序提供对伪造数据的只读访问权限。此外,如果将该框架与网络保护和端点保护一起使用,可以形成协同效应,因为它们提供不同类型的保护。 |
|
Citation: |
https://handle.itu.int/11.1002/1000/15709 |
Series title: |
X series: Data networks, open system communications and security X.1200-X.1299: Cyberspace security X.1200-X.1229: Cybersecurity |
Approval date: |
2023-11-13 |
Provisional name: | X.spmoh |
Approval process: | AAP |
Status: |
In force |
Maintenance responsibility: |
ITU-T Study Group 17 |
Further details: |
Patent statement(s)
Development history
|
|
|
Ed. |
ITU-T Recommendation |
Status |
Summary |
Table of Contents |
Download |
1
|
X.1220 (11/2023)
|
In force
|
here
|
here
|
here
|
Title |
Approved on |
Download |
Guidelines for identity-based cryptosystems used for cross-domain secure communications
|
2023
|
here
|
Overview of hybrid approaches for key exchange with quantum key distribution
|
2022
|
here
|
Guidelines for security management of using artificial intelligence technology
|
2022
|
here
|
Unified Security Model (USM) – A neutral integrated system approach to cybersecurity
|
2020
|
here
|
Successful use of security standards (2nd edition)
|
2020
|
here
|
Description of the incubation mechanism and ways to improve it
|
2020
|
here
|
Strategic approaches to the transformation of security studies
|
2020
|
here
|
|