Threat modeling for aviation computer security

被引:0
作者
Baquero, Abraham O. [1 ]
Kornecki, Andrew J. [2 ]
Zalewski, Janusz [3 ]
机构
[1] SMRT Software Corporation, 422 Wekiva Rapids Dr., Altamonte Springs,FL,32714, United States
[2] Electrical, Computer, Software, and System Engineering Department, Embry Riddle Aeronautical University, 600 S. Clyde Morris Blvd., Daytona Beach,FL,32114, United States
[3] Department of Software Engineering, Florida Gulf Coast University, 10501 FGCU Blvd, Ft. Myers,FL,33965, United States
来源
CrossTalk | 2015年 / 28卷 / 06期
关键词
Data flow analysis - Embedded systems - Network security - Data flow graphs - Application programs - Cybersecurity;
D O I
暂无
中图分类号
学科分类号
摘要
The safety of aircraft cannot be analyzed anymore based only on potential hazards and failures. Due to their increasing interconnectivity, modern computer systems are exposed to a variety of security threats. Additionally, complexity of the system may be a source of vulnerabilities opening the system to malicious actions with ultimate impact on safety. Threat Modeling is the technique that assists software engineers to identify and document potential security threats associated with a software product, providing development teams a systematic way of discovering strengths and weaknesses in their software applications. Microsoft's SDL Threat Modeling Tool offers automated analysis of security threats of systems that can be represented using data flow diagrams. The article discusses issues of security in aviation and presents a case study of a realistic cyber-physical system to introduce tool-supported threat modeling method which can be used for unmanned aerial systems security analyses.
引用
收藏
页码:21 / 27
相关论文
empty
未找到相关数据