Security Property Modeling

被引:1
|
作者
Hnaini, Hiba [1 ]
Le Roux, Luka [1 ]
Champeau, Joel [1 ]
Teodorov, Ciprian [1 ]
机构
[1] ENSTA Bretagne, Lab STICC, SL Dept, Brest, France
关键词
Cyber-security; Modeling; Attacker; Methodology; Formal Methods; Model-checking; Property Specification; Case Study; SYSTEMS;
D O I
10.5220/0010388206940701
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing number of cyber-attacks on cyber-physical systems, many security precautions and solutions have been suggested. However, most of these solutions aim to prevent the access of an adversary to the system. Though, with the increasing number of elements used in a system, and thus vulnerabilities, it is essential to study the risks introduced to the system to make the system itself efficient enough to react to the attacks once an attacker has obtained access. Analyzing and discovering the risks is the first step to making the system more resilient. This paper proposes a methodology that combines the qualitative risk analysis with formal methods (model checking) to identify the risks that were not recognized during testing or functional modeling phases. To examine this methodology, a car reservation system is modeled with an attacker, and then its security properties are verified using UPPAAL model checking tool. As a result, some risks were identified and tested for the possibility of them occurring and their effects on the system.
引用
收藏
页码:694 / 701
页数:8
相关论文
共 50 条
  • [21] CONFISCATION AS A PROPERTY MEASURE OF CRIMINOLOGICAL SECURITY
    Andrey, Propostin A.
    TOMSK STATE UNIVERSITY JOURNAL, 2010, (331): : 119 - +
  • [22] Towards Property Driven Hardware Security
    Hu, Wei
    Althoff, Alric
    Ardeshiricham, Armaiti
    Kastner, Ryan
    2016 17TH INTERNATIONAL WORKSHOP ON MICROPROCESSOR AND SOC TEST AND VERIFICATION (MTV), 2016, : 51 - 56
  • [23] The register as an instrument of security in property transactions
    Pedrón, AP
    LAND LAW IN COMPARATIVE PERSPECTIVE, 2002, : 87 - 95
  • [24] Introduction to Intellectual Property and Security Minitrack
    Durcikova, Alexandra
    Jennex, Murray E.
    2015 48TH HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES (HICSS), 2015, : 3929 - 3929
  • [25] AGAIN - SECURITY VALUE OF PROPERTY YIELD
    BORRMANN, GF
    BETRIEB, 1974, 27 (43): : 2057 - 2057
  • [26] Property of the land and the agricultural security of Venezuela
    Jaimes, E
    Mendoza, JG
    Ramos, Y
    Pineda, N
    INTERCIENCIA, 2002, 27 (12) : 656 - +
  • [27] Modeling RFID security
    Zhang, XL
    King, B
    INFORMATION SECURITY AND CRYPTOLOGY, PROCEEDINGS, 2005, 3822 : 75 - 90
  • [28] Modeling network security
    Bradbury, Danny
    COMPUTERS & SECURITY, 2006, 25 (03) : 163 - 164
  • [29] Security Modeling and Analysis
    Bau, Jason
    Mitchell, John C.
    IEEE SECURITY & PRIVACY, 2011, 9 (03) : 18 - 25
  • [30] PROFESSOR RIESENFELD - REAL-PROPERTY AND REAL-PROPERTY SECURITY
    HETLAND, JR
    CALIFORNIA LAW REVIEW, 1975, 63 (06) : 1402 - 1405