Threat Analysis in Systems-of-Systems: An Emergence-Oriented Approach

被引:9
|
作者
Ceccarelli, Andrea [1 ]
Zoppi, Tommaso [1 ]
vasenev, Alexandr [2 ]
Mori, Marco [1 ]
Ionita, Dan [2 ]
Montoya, Lorena [2 ]
Bondavalli, Andrea [1 ]
机构
[1] Univ Florence, Viale Morgagni 65, Florence, Italy
[2] Univ Twente, Drienerlolaan 5, NL-7522 NB Enschede, Netherlands
基金
欧盟第七框架计划;
关键词
Emergent properties; systems-of-systems; cyber-physical systems; threat analysis; security; evolution; user assessment; DESIGN;
D O I
10.1145/3234513
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Cyber-physical Systems of Systems (SoSs) are large-scale systems made of independent and autonomous cyber-physical Constituent Systems (CSs) which may interoperate to achieve high-level goals also with the intervention of humans. Providing security in such SoSs means, among other features, forecasting and anticipating evolving SoS functionalities, ultimately identifying possible detrimental phenomena that may result from the interactions of CSs and humans. Such phenomena, usually called emergent phenomena, are often complex and difficult to capture: the first appearance of an emergent phenomenon in a cyber-physical SoS is often a surprise to the observers. Adequate support to understand emergent phenomena will assist in reducing both the likelihood of design or operational flaws, and the time needed to analyze the relations amongst the CSs, which always has a key economic significance. This article presents a threat analysis methodology and a supporting tool aimed at (i) identifying (emerging) threats in evolving SoSs, (ii) reducing the cognitive load required to understand an SoS and the relations among CSs, and (iii) facilitating SoS risk management by proposing mitigation strategies for SoS administrators. The proposed methodology, as well as the tool, is empirically validated on Smart Grid case studies by submitting questionnaires to a user base composed of 3 stakeholders and 18 BSc and MSc students.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] A deterministic approach for systems-of-systems resilience quantification
    Ed-daoui, Ilyas
    Itmi, Mhamed
    El Hami, Abdelkhalak
    Hmina, Nabil
    Mazri, Tomader
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURES, 2018, 14 (01) : 80 - 99
  • [2] Using Bayesian Networks for a Cyberattacks Propagation Analysis in Systems-of-Systems
    El Hachem, Jamal
    Sedaghatbaf, Ali
    Lisova, Elena
    Causevic, Aida
    2019 26TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE (APSEC), 2019, : 363 - 370
  • [3] Towards a Catalog of Heuristics for the Design of Systems-of-Systems
    Imamura, Marcio
    Ferreira, Francisco
    Fernandes, Juliana
    Graciano Neto, Valdemar Vicente
    dos Santos, Rodrigo Pereira
    PROCEEDINGS OF THE 19TH BRAZILIAN SYMPOSIUM ON INFORMATION SYSTEMS, 2023, : 128 - 135
  • [4] Revisiting Goal-Oriented Models for Self-Aware Systems-of-Systems
    Cavalcante, Everton
    Batista, Thais
    Bencomo, Nelly
    Sawyer, Pete
    2015 IEEE INTERNATIONAL CONFERENCE ON AUTONOMIC COMPUTING, 2015, : 231 - 234
  • [5] A Formal Model-Based Approach to Engineering Systems-of-Systems
    Fitzgerald, John
    Bryans, Jeremy
    Payne, Richard
    COLLABORATIVE NETWORKS IN THE INTERNET OF SERVICES, 2012, 380 : 53 - 62
  • [6] Towards a Risk Analysis Method for Systems-of-Systems Based on Systems Thinking
    Axelsson, Jakob
    Kobetski, Avenir
    12TH ANNUAL IEEE INTERNATIONAL SYSTEMS CONFERENCE (SYSCON2018), 2018, : 300 - 307
  • [7] A Security Framework for Systems-of-Systems
    Abou-Tair, Dhiah el Diehn I.
    Alouneh, Sahel
    Khalifeh, Ala
    Obermaisser, Roman
    ADVANCES IN COMPUTER SCIENCE AND UBIQUITOUS COMPUTING, 2018, 474 : 427 - 432
  • [8] Applying Systems-of-Systems Principles to Purposeful Design of Human Systems
    McDermott, Tom
    2018 13TH ANNUAL CONFERENCE ON SYSTEM OF SYSTEMS ENGINEERING (SOSE), 2018, : 150 - 156
  • [9] Enabling Systems and the Adaptability of Complex Systems-of-Systems
    Adler, Charles O.
    Dagli, Cihan H.
    COMPLEX ADAPTIVE SYSTEMS 2012, 2012, 12 : 31 - 36
  • [10] Systems-of-systems engineering and the pragmatics of demand
    Boxer, Philip
    Morris, Edwin
    Anderson, William
    Cohen, Bernard
    2008 2ND ANNUAL IEEE SYSTEMS CONFERENCE, 2008, : 482 - 488