Paper published in a book (Scientific congresses, symposiums and conference proceedings)
Modelling Attack-defense Trees Using Timed Automata
Gadyatskaya, Olga; Hansen, R. R.; Larsen, K. G. et al.
2016In Proc. of FORMATS
Peer reviewed
 

Files


Full Text
chp%3A10.1007%2F978-3-319-44878-7_3.pdf
Publisher postprint (912.37 kB)
Request a copy

The original publication is available at http://link.springer.com/chapter/10.1007%2F978-3-319-44878-7_3


All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
attack trees; timed automata; security modelling
Abstract :
[en] Performing a thorough security risk assessment of an organisation has always been challenging, but with the increased reliance on outsourced and off-site third-party services, i.e., ``cloud services'', combined with internal (legacy) IT-infrastructure and -services, it has become a very difficult and time-consuming task. One of the traditional tools available to ease the burden of performing a security risk assessment and structure security analyses in general is attack trees, a tree-based formalism inspired by fault trees, a well-known formalism used in safety engineering. In this paper we study an extension of traditional attack trees, called attack-defense trees, in which not only the attacker's actions are modelled, but also the defensive actions taken by the attacked party. In this work we use the attack-defense tree as a goal an attacker wants to achieve, and separate the behaviour of the attacker and defender from the attack-defense-tree. We give a fully stochastic timed semantics for the behaviour of the attacker by introducing attacker profiles that choose actions probabilistically and execute these according to a probability density. Lastly, the stochastic semantics provides success probabilitites for individual actions. Furthermore, we show how to introduce costs of attacker actions. Finally, we show how to automatically encode it all with a network of timed automata, an encoding that enables us to apply state-of-the-art model checking tools and techniques to perform fully automated quantitative and qualitative analyses of the modelled system.
Research center :
Interdisciplinary Centre for Security, Reliability and Trust - SnT
Disciplines :
Computer science
Author, co-author :
Gadyatskaya, Olga ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Hansen, R. R.
Larsen, K. G.
Legay, A.
Olesen, M. C.
Poulsen, D. B.
External co-authors :
yes
Language :
English
Title :
Modelling Attack-defense Trees Using Timed Automata
Publication date :
2016
Event name :
14th International Conference on Formal Modeling and Analysis of Timed Systems (FORMATS)
Event place :
Quebec City, Canada
Event date :
from 24-08-2016 to 26-08-2016
Audience :
International
Main work title :
Proc. of FORMATS
Publisher :
Springer
Collection name :
LNCS 9884
Peer reviewed :
Peer reviewed
Focus Area :
Security, Reliability and Trust
European Projects :
FP7 - 318003 - TRESPASS - Technology-supported Risk Estimation by Predictive Assessment of Socio-technical Security
Name of the research project :
TRESPASS
Funders :
CE - Commission Européenne [BE]
Available on ORBilu :
since 02 January 2017

Statistics


Number of views
81 (6 by Unilu)
Number of downloads
2 (2 by Unilu)

Scopus citations®
 
42
Scopus citations®
without self-citations
32
OpenCitations
 
26
WoS citations
 
34

Bibliography


Similar publications



Contact ORBilu