arrow
Return

Data-Driven Vulnerability Exploration for Design Phase System Analysis

delete2020-12-01
delete15
delete
OA
AI
G
Georgios Bakirtzis *
B
Brandon Simon
A
Aidan Collins
C
Cody Fleming
C
Carl Elks
DOI:10.1109/JSYST.2019.2940145delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Applying security as a lifecycle practice is becoming increasingly important to combat targeted attacks in safety-critical systems. Among others, there are two significant challenges in this area: the need for models that can characterize a realistic system in the absence of an implementation and an automated way to associate attack vector information, that is, historical data, to such system models. We propose the cybersecurity body of knowledge (CYBOK), which takes in sufficiently characteristic models of systems and acts as a search engine for potential attack vectors. CYBOK is fundamentally an algorithmic approach to vulnerability exploration, which is a significant extension to the body of knowledge it builds upon. By using CYBOK, security analysts and system designers can work together to assess the overall security posture of systems early in their lifecycle, during major design decisions and before final product designs, consequently, assisting in applying security earlier and throughout the systems lifecycle.
Keywords:
Analytical models
Data models
Software
Hardware
Computer security
Safety
Cyber-physical systems
model-based engineer-ing
safety
security
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

I
IEEE Open Journal of Circuits and Systems
IF:
2.4
Papers:
4.5K
Citations:
387

Organization

U
University of Virginia
Scholars:
3.0W
Papers: 2.7W
Citations: 4.1W
V
Virginia Commonwealth University
Scholars:
2.2W
Papers: 1.8W
Citations: 1.9W