Ideally, a measure of the security of a system should capture quantitatively the intuitive notion of ‘the ability of the system to resist attack’. That is, it should be operational, reflecting the degree to which the system can be expected to remain
No takes yet. Share an insight, caveat, or question.
Littlewood et al. (1993) studied this question.
Synapse has enriched 4 closely related papers on similar clinical questions. Consider them for comparative context: