Understanding Attacks: Modeling the outcome of Attack Tree analysis

نویسنده

  • J. H. Brandt
چکیده

Attack trees are used in structured approaches to describe all actions that an attacker must undertake to achieve a certain (malicious) goal. The analysis of such an attack tree provides insight in the vulnerabilities of this system. One way of attack tree analysis is the transformation of the attack tree into a priced timed automaton, and analysing this automaton with Uppaal. This approach generates a large amount of trace data, which is proof of the results that Uppaal provides. This trace data is undocumented and needs further parsing in order to gain usable information. These drawbacks make the isolation of information relevant to the attack tree rather cumbersome. This paper proposed a meta-model to model Uppaal and Uppaal trace data and shows that it is possible to build a compiler that compiles raw trace data into instances of this metamodel effectively. This paper also suggests how to derive insightful information and map this onto the original attack tree. This yields the original attack tree enriched with information derived from the trace data.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

P155: Differential Diagnosis of Panic Attacks: Using a Decision Tree

Panic attacks are discrete episodes of intense fear or discomfort accompanied by symptoms such as palpitations, shortness of breath, sweating, trembling, derealization and a fear of losing control or dying. Although panic attacks are required for a diagnosis of panic disorder, they also occur in association with a host of other disorders listed in the 5h version of the diagnostic and statistica...

متن کامل

A Structural Framework for Modeling Multi-Stage Network Attacks

Incidents such as Solar Sunrise and Nimda demonstrate the need to expressively model distributed and complex network attacks. To protect information systems, system administrators must be able to represent vulnerabilities in a way that lends itself to correlation, analysis, and prediction. State of the art intrusion detection and attack analysis systems struggle to effectively represent sophist...

متن کامل

Modeling the Number of Attacks in Multiple Sclerosis Patients Using Zero-Inflated Negative Binomial Model

Background and aims: Multiple sclerosis (MS) is an inflammatory disease of the central nervous system.The impact of the number of attacks on the disease is undeniable. The aim of this study was to analyze thenumber of attacks in these patients.Methods: In this descriptive-analytical study, the registered data of 1840 MS patients referred to the MS clinicof Ayatollah Kash...

متن کامل

An Effective Attack-Resilient Kalman Filter-Based Approach for Dynamic State Estimation of Synchronous Machine

Kalman filtering has been widely considered for dynamic state estimation in smart grids. Despite its unique merits, the Kalman Filter (KF)-based dynamic state estimation can be undesirably influenced by cyber adversarial attacks that can potentially be launched against the communication links in the Cyber-Physical System (CPS). To enhance the security of KF-based state estimation, in this paper...

متن کامل

HMAC-Based Authentication Protocol: Attacks and Improvements

As a response to a growing interest in RFID systems such as Internet of Things technology along with satisfying the security of these networks, proposing secure authentication protocols are indispensable part of the system design. Hence, authentication protocols to increase security and privacy in RFID applications have gained much attention in the literature. In this study, security and privac...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016