Skip to main content
Log in

A new cost-saving and efficient method for patch management using blockchain

  • Published:
The Journal of Supercomputing Aims and scope Submit manuscript

Abstract

In the corporate environment, we use a variety of software. To increase security, patch management systems are used to manage software patches. This study analyzes existing patch management systems to identify security threats. Furthermore, we utilized blockchain to manage patches safely and efficiently. Using this research, vendors operating patch management systems can connect to the blockchain network to share the verified patch information. It also stores the public key information required to verify the integrity of the patch and the information generated during patch management in the block. This effectively monitors the patch management process. It also reduces patch management costs and improves security.

This is a preview of subscription content, log in via an institution to check access.

Access this article

Price excludes VAT (USA)
Tax calculation will be finalised during checkout.

Instant access to the full article PDF.

Fig. 1
Fig. 2
Fig. 3
Fig. 4
Fig. 5
Fig. 6
Fig. 7
Fig. 8
Fig. 9
Fig. 10
Fig. 11
Fig. 12
Fig. 13
Fig. 14

Similar content being viewed by others

References

  1. Lee CW, Im EG, Seol JT, Sohn TS, Moon JS, Kim DK (2003) A secure patch distribution architecture. In: Intelligent Systems Design and Applications, pp 229–238

  2. Cavusoglu H, Cavusoglu H, Zhang J (2006) Economics of security patch management. In: The Fifth Workshop on the Economics of Information Security (WEIS 2006)

  3. Suryani V, Sulistyo S, Widyawan W (2017) Internet of Things (IoT) framework for granting trust among objects. J Inf Process Syst 13:1613–1627

    Google Scholar 

  4. Eyal I, Gencer AE, Sirer EG, Van Renesse R (2016) Bitcoin-ng: a scalable blockchain protocol. In: 13th {USENIX} Symposium on Networked Systems Design and Implementation ({NSDI} 16), pp 45–59

  5. Porru S, Pinna A, Marchesi M, Tonelli R (2017) Blockchain-oriented software engineering: challenges and new directions. In: 2017 IEEE/ACM 39th International Conference on Software Engineering Companion (ICSE-C), pp 169–171

  6. Kim HW, Jeong YS (2018) Secure authentication-management human-centric scheme for trusting personal resource information on mobile cloud computing with blockchain. Hum Centric Comput Inf Sci 8:11

    Article  Google Scholar 

  7. Korea Internet & Security Agency (2013) Status of infringement accidents through major internet accident experiences in South Korea

  8. Bartoletti T, Dobbs LA, Kelley M (1997) Secure software distribution system. In: Proceedings of the 20th NIST-NCSC National Information Systems Security Conference, pp 191–201

  9. Kim JH, Won YJ (2017) Patch integrity verification method using dual electronic signatures. J Inf Process Syst 13:1516–1526

    Google Scholar 

  10. JongHyup L (2018) Patch transporter: incentivized, decentralized software patch system for WSN and IoT environments. Sensors 18(2):574

    Google Scholar 

  11. Iansiti M, Lakhani KR (2017) The truth about blockchain. Harv Bus Rev 95:118–127

    Google Scholar 

  12. Mougayar W (2016) The business blockchain: promise, practice, and application of the next Internet technology. Wiley, New York

    Google Scholar 

  13. Huh JH, Seo K (2018) Blockchain-based mobile fingerprint verification and automatic log-in platform for future computing. J Supercomput 2018:1–17

    Google Scholar 

  14. Guo Y, Liang C (2016) Blockchain application and outlook in the banking industry. Financ Innov 2:24

    Article  Google Scholar 

  15. Khan MA, Salah K (2018) IoT security: review, blockchain solutions, and open challenges. Futur Gener Comput Syst 82:395–411

    Article  Google Scholar 

  16. Bozic N, Pujolle G, Secci S (2016) A tutorial on blockchain and applications to secure network control-planes. In: 2016 3rd Smart Cloud Network and Systems. https://doi.org/10.1109/scns.2016.7870552

  17. Sharma PK, Moon SY, Park JH (2017) Block-VN: a distributed blockchain based vehicular network architecture in smart city. J Inf Process Syst 13:184–195

    Google Scholar 

  18. Nakamoto S (2009) Bitcoin: a peer-to-peer electronic cash system [Online]. Available: http://www.bitcoin.org/bitcoin.pdf

  19. Lin IC, Liao TC (2017) A survey of blockchain security issues and challenges. Int J Netw Secur 19:653–659

    Google Scholar 

  20. Shon T, Moon J, Lee C, Im EG, Seo JT (2003) Safe patch distribution architecture. In: Intranet Environments, Security and Management, pp 455–460

  21. Small RA, Brykczynski B (2003) Reducing internet-based intrusions: effective security patch management. IEEE Softw 20:50–57

    Google Scholar 

Download references

Acknowledgements

This research was supported by the MSIT (Ministry of Science and ICT), Korea, under the ITRC (Information Technology Research Center) support program (IITP-2019-2016-0-00304) supervised by the IITP (Institute for Information & communications Technology Promotion).

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Yoojae Won.

Additional information

Publisher's Note

Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.

Rights and permissions

Reprints and permissions

About this article

Check for updates. Verify currency and authenticity via CrossMark

Cite this article

Kim, Y., Won, Y. A new cost-saving and efficient method for patch management using blockchain. J Supercomput 76, 5301–5319 (2020). https://doi.org/10.1007/s11227-019-02946-y

Download citation

  • Published:

  • Issue Date:

  • DOI: https://doi.org/10.1007/s11227-019-02946-y

Keywords

Navigation