Main Article Content
Evaluating the Security Risks of System Using Hidden Markov Models
Abstract
risk assessment. We first establish the risk of a system as the composition of the risks of individual authentication factors employed for user authentication processes, providing a more formally defined model. Using Hidden Markov Models (HMMs) we characterize the likelihood of transitions between security states of systems with different levels of
authentication factors and we provide soft evidence on the states of these systems by applying our security assessment tool to an existing multifactor authentication model. The results of the analysis and the empirical study provide insights into the authentication model design problem and establish a foundation for future research in system authentication application.