CST-SDL: A Scenario Description Language for Collaborative Security Training in Cyber Ranges

被引:0
|
作者
Shirmohammadi, Navid [1 ]
Ladani, Behrouz Tork [1 ]
机构
[1] Univ Isfahan, Fac Comp Engn, Dept Software Engn, Esfahan, Iran
关键词
Cyber Range; Cybersecurity; Training; Model-Driven; Engineering; Scenario Description; Language;
D O I
10.22042/isecure.2024.462008.1132
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As cyber threats grow increasingly sophisticated, the importance of security training as an effective means of prevention will become even more critical. Cyber Range (CR) is a platform for creating cyber training programs using virtualization and simulation technologies to create a realistic training environment. The main challenge for utilizing a CR is the specialized human resources required to design and maintain training sessions. To tackle this challenge, several high-level languages, known as Scenario Description Languages (SDLs), have been developed to enable the specification of training environments as models. These models can then be automatically transformed into deployment artifacts. Our studies showed that the existing SDLs could not address requirements when designing complex scenarios where multiple trainees should collaborate to reach a desired goal through various acceptable solutions. We present the Collaborative Security Training SDL (CST-SDL) for creating multi-trainee and multi-solution scenarios. CST-SDL uses an acyclic directional graph for specifying the scenario's solution routes and allows defining trainees with unique tasks, goals, and solution routes during the training session. To evaluate the CST-SDL's capabilities, we have implemented and integrated it into the KYPO cyber range.
引用
收藏
页码:59 / 73
页数:15
相关论文
共 2 条
  • [1] Cyber range scenario for smart grid security training
    Lieskovan, Tomas
    Kohout, David
    Frolka, Jakub
    ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2023, 140 (05): : 452 - 459
  • [2] Cyber range scenario for smart grid security training; [Cyber-Range-Szenario für das Sicherheitstraining für intelligente Stromnetze]
    Lieskovan T.
    Kohout D.
    Frolka J.
    e & i Elektrotechnik und Informationstechnik, 2023, 140 (5) : 452 - 459