A Model-Based Approach to Security Analysis for Cyber-Physical Systems

10/31/2017
by   Georgios Bakirtzis, et al.
0

Evaluating the security of cyber-physical systems throughout their life cycle is necessary to assure that they can be deployed and operated in safety-critical applications, such as infrastructure, military, and transportation. Most safety and security decisions that can have major effects on mitigation strategy options after deployment are made early in the system's life cycle. To allow for a cyber-vulnerability analysis before deployment, a sufficient well-formed model has to be constructed. To construct such a model we produce a taxonomy of attributes, that is, a generalized schema for system attributes. This schema allows to capture the necessary specificity so that it characterizes a possible but real system and can also map to the attack vector space associated with the model's attributes. In this way, we can match possible attack vectors and provide architectural mitigation at the design phase. We present a model of a flight control system encoded in the Systems Modeling Language, commonly known as SysML, and show agnosticism with respect to the modeling language or tool used.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
04/30/2020

Fundamental Challenges of Cyber-Physical Systems Security Modeling

Systems modeling practice lacks security analysis tools that can interfa...
research
08/24/2018

Looking for a Black Cat in a Dark Room: Security Visualization for Cyber-Physical System Design and Analysis

Today, there is a plethora of software security tools employing visualiz...
research
09/06/2019

Data Driven Vulnerability Exploration for Design Phase System Analysis

Applying security as a lifecycle practice is becoming increasingly impor...
research
06/16/2018

Attack Surface Metrics and Privilege-based Reduction Strategies for Cyber-Physical Systems

Cybersecurity risks are often managed by reducing the system's attack su...
research
09/09/2020

A Security Architecture for Railway Signalling

We present the proposed security architecture Deutsche Bahn plans to dep...
research
12/08/2018

A Multilevel Cybersecurity and Safety Monitor for Embedded Cyber-Physical Systems

Cyber-physical systems (CPS) are composed of various embedded subsystems...
research
09/30/2019

Exploring how Component Factors and their Uncertainty Affect Judgements of Risk in Cyber-Security

Subjective judgements from experts provide essential information when as...

Please sign up or login with your details

Forgot password? Click here to reset