Formal Template-Based Generation of Attack–Defence Trees for Automated Security Analysis

  • Jeremy Bryans
  • , Lin Shen Liew
  • , Hoang Nga Nguyen
  • , Giedre Sabaliauskaite
  • , Siraj Ahmed Shaikh

Research output: Contribution to journalArticlepeer-review

35 Downloads (Pure)

Abstract

Systems that integrate cyber and physical aspects to create cyber-physical systems (CPS) are becoming increasingly complex, but demonstrating the security of CPS is hard and security is frequently compromised. These compromises can lead to safety failures, putting lives at risk. Attack Defense Trees with sequential conjunction (ADS) are an approach to identifying attacks on a system and identifying the interaction between attacks and the defenses that are present within the CPS. We present a semantic model for ADS and propose a methodology for generating ADS automatically. The methodology takes as input a CPS system model and a library of templates of attacks and defenses. We demonstrate and validate the effectiveness of the ADS generation methodology using an example from the automotive domain.
Original languageEnglish
Article number481
Number of pages25
Journal Information
Volume14
Issue number9
DOIs
Publication statusPublished - 29 Aug 2023

Bibliographical note

This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).

Keywords

  • automotive cyber security
  • threat modelling
  • attack defense tree

Fingerprint

Dive into the research topics of 'Formal Template-Based Generation of Attack–Defence Trees for Automated Security Analysis'. Together they form a unique fingerprint.

Cite this