| Saturday, September 24 |
| 16:00-19:00 |
Registration |
| Sunday, September 25 |
| 9:30-10.00 |
Opening Session |
Plenary session 1 Chairman: V.Skormin |
| 10:00-10:50 |
Invited Talk Rule-Based Topological Vulnerability Analysis Sushil Jajodia, Professor of Information Technology and the director of Center for Secure Information Systems at the George Mason University, USA |
| 10:50-11:10 |
Coffee break |
Plenary session 2 Chairman: I. Kotenko |
| 11:10-12:00 |
Invited talk Critical Information Assurance Issues and Directions for Modern Large-Scale Infrastructures Ming-Yuh Huang, The Boeing Company, USA |
Session 1.1. Mathematical models, Architectures and Protocols for Security Chairman: M. Smirnov |
| 12:00-12:25 |
Calibrating Entropy Functions Applied to Computer Networks Duncan A. Buell (USA) |
| 12:25-12:50 |
A Passive External Web Surveillance Technique for Private Networks Constantine Daicos, Scott Knight (Canada) |
| 13:00-14:20 |
Lunch |
Session 1.2. Mathematical models, Architectures and Protocols for Security Chairman: M.-Y. Huang |
| 14:35-15:00 |
An ontology-based approach to information systems security management Bill Tsoumas, Stelios Dritsas, Dimitris Gritzalis (Greece) |
| 15:00-15:25 |
Trust by Workflow in Autonomic Communication Mikhail Smirnov (Germany) |
| 15:25-15:50 |
Networks, Markov Lie Monoids, and Generalized Entropy Joseph E. Johnson (USA) |
| 15:50-16:00 |
A New Scheme for the Location Information Protection in Mobile Communication Environments Soon Seok Kim, Sang Soo Yeo, Hong Jin Park, Sung Kwon Kim (Korea) |
| 16:00-16:10 |
Region Protection/Restoration Scheme in Survivable Networks Wojciech Molisz, Jacek Rak (Poland) |
| 16:10-16:40 |
Coffee break |
Session 2. Information flow analysis, Covert channels and Trust management Chairman: A. Miller |
| 16:40-17:05 |
A Probabilistic Property-Specific Approach to Information Flow Daniele Beauquier, Marie Duflot, Marius Minea (France) |
| 17:05-17:30 |
Generalized Abstract Non-Interference - Abstract Secure Information- flow Analysis for Automata Roberto Giacobazzi, Isabella Mastroeni (Italy) |
| 17:30-17:55 |
Detection of Illegal Information Flow Alexander Grusho, Alexander Kniazev, Elena Timonina (Russia) |
| 17:55-18:20 |
Towards More Controllable and Practical Delegation Gang Yin, Huai-min Wang (China) |
| 18:20-18:30 |
Statistical Covert Channels through PROXY Server Alexei Galatenko, Alexander Grusho, Alexander Kniazev, Elena Timonina (Russia) |
| 19:00-21:00 |
Welcome reception |
| Monday, September 26 |
Plenary session 3 Chairman: S.-K. Chin |
| 9:00-9:50 |
Invited Talk Models and Analysis of Active Worm Defense David Nicol, Prof. of Electrical and Computer Engineering, University of Illinois at Urbana-Champaign, Coordinated Science Laboratory, USA |
Plenary session 4 Chairman: A. Grusho |
| 9:50-10:40 |
Invited talk Self-Managed Cells for Ubiquitous Systems Naranker Dulay. Ph.D., Department of Computing, Imperial College London, UK |
| 10:40-11:00 |
Coffee break |
Session 3. Threat modeling, Vulnerability assessment, and Network forensics Chairman: D. Nicol |
| 11:00-11:25 |
A Theoretical Model for the Average Impact of Attacks on Billing Infrastructures F.Baiardi, C.Telmon (Italy) |
| 11:25-11:50 |
Analyzing Vulnerabilities and Measuring Security Level at Design and Exploitation Stages of Computer Network Life Cycle Igor Kotenko, Michail Stepashkin (Russia) |
| 11:50-12:15 |
A Temporal Logic-based Model for Forensic Investigation in Networked System Security Slim Rekhis and Noureddine Boudriga (Tunisia) |
| 12:15-12:40 |
Vulnerabilities Detection in the Configurations of MS Windows Operating System Peter D. Zegzhda, Dmitry P. Zegzhda, Maxim O. Kalinin (Russia) |
| 12:40-12:50 |
Developing an Insider Threat Model Using Functional Decomposition Jonathan W. Butts, Robert F. Mills, Rusty O. Baldwin (USA) |
| 13:00-14:20 |
Lunch |
Session 4. Security policy and Operating system security Chairman: N.Dulay |
| 14:20-14:45 |
Policy-driven Routing Management using CIM Felix J. Garcia Clemente, Jesus D. Jimenez Re, Gregorio Martinez Perez, Antonio F. Gomez Skarmeta (Spain) |
| 14:45-15:10 |
Secure Hybrid Operating System "Linux over Fenix" Dmitry P. Zegzhda, Alex M. Vovk (Russia) |
| 15:10-15:20 |
An XML-Seamless Policy Based Management Framework Felix J. Garcia Clemente, Gregorio Martinez Perez, Antonio F. Gomez Skarmeta (Spain)) |
| 15:20-15:30 |
Security Checker Architecture for Policy-based Security Management Artem Tishkov, Igor Kotenko, Ekaterina Sidelnikova (Russia) |
| 15:30-15:50 |
Coffee break |
| 16:00-19:00 |
City tour |
| 19:30-22:30 |
Workshop dinner |
| Tuesday, September 27 |
Plenary session 5 Chairman: V. Gorodetsky |
| 9:00-9:50 |
Invited talk Prevention of Information Attacks by Run-Time Detection of Self-Replication in Computer Codes Douglas Summerville, Ph.D., Associate Professor, State University of New York at Binghamton, USA |
| 9:50-10:50 |
Panel discussion. Vulnerability Assessment and Intrusion Detection: State of the Art, Problems and Future Research Directions. Panelists: N.Dulay, S.-K. Chin, V.Gorodetsky, M.-Y.Huang, S.Jajodia, I.Kotenko, D.Nicol, V.Skormin, D.Summerville, P. Zegzhda |
| 10:50-11:10 |
Coffee beak |
Session 5. Intrusion detection Chairman: I. Kotenko |
| 11:10-11:35 |
Hybrid Intrusion Detection Model Based on Ordered Sequences Abdulrahman Alharby, Hideki Imai (Japan) |
| 11:35-12:00 |
Asynchronous Alerts Correlation in Intrusion Detection Systems Vladimir Gorodetsky, Oleg Karsaev, Vladimir Samoilov, Alexander Ulanov (Russia) |
| 12:00-12:25 |
Behavior-based model of detection and prevention of intrusions in computer networks Victor Serdiouk (Russia) |
| 12:25-12:50 |
A Formal Immune Network and its Implementation for On-Line Intrusion Detection Alexander O. Tarakanov, Sergei V. Kvachev, Alexander V. Sukhorukov (Russia) |
| 12:50-13:00 |
Massive Data Mining for Polymorphic Code Detection Udo Payer, Peter Teufl, Stefan Kraxberger, Mario Lamberger (Austria) |
| 13:00-14:20 |
Lunch |
Session 6. Authentication, Authorization and Access control Chairman: P. Zegzhda |
| 14:20-14:45 |
Safety Problems in Access Control with Temporal Constraints Philippe Balbiani, Fahima Cheikh (France) |
| 14:45-15:10 |
A Modal Logic for Role-Based Access Control R Thumrongsak Kosiyatrakul, Susan Older, Shiu-Kai Chin (USA) |
| 15:10-15:35 |
Unique User-generated Digital Pseudonyms Peter Schartner, Martin Schaffer (Austria) |
| 15:35-15:45 |
An Efficient Access Control Model utilizing the Attribute Certificate Structuring Soomi Yang (Korea) |
| 15:45-15:55 |
Secure Protected Password Change Scheme Eun-Jun Yoon, Eun-Kyung Ryu, Kee-Young Yoo (Korea) |
| 15:55-16:05 |
Foundation for a Time Interval Access Control Model Francis Afinidad, Timothy Levin, Cynthia Irvine, Thuy Nguyen (USA) |
| 16:05-16:15 |
Key Escrow with Tree-based Access Structure Martin Schaffer, Peter Schartner (Austria) |
| 16:15-16:25 |
Encoding Private Key in Fingerprints Erno Jeges, Zoltan Hornak, Csaba Kormoczi (Hungary) |
| 16:25-16:45 |
Coffee break |
| 16:45-17:15 |
Closing session |