Using Bayesian Networks for a Cyberattacks Propagation Analysis in Systems-of-Systems

被引:6
|
作者
El Hachem, Jamal [1 ]
Sedaghatbaf, Ali [2 ]
Lisova, Elena [2 ]
Causevic, Aida [2 ]
机构
[1] Univ Pau & Pays Adour, LIUPPA, Pau, France
[2] Malardalen Univ, Vasteras, Sweden
来源
2019 26TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE (APSEC) | 2019年
关键词
Systems-of-Systems; Service Oriented Architectures; Bayesian Networks; Cyberattacks; SECURITY;
D O I
10.1109/APSEC48747.2019.00056
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
System of Systems (SoS) represent a set of independent Constituent Systems (CS) that collaborate in order to provide functionalities that they are unable to achieve independently. We consider SoS as a set of connected services that needs to be adequately protected. The integration of these independent, evolutionary and distributed systems, intensifies SoS complexity and emphasizes the behavior uncertainty, which makes an SoS security analysis a critical challenge. One of the major priorities when designing SoS, is to analyze the unknown dependencies among CS services and vulnerabilities leading to potential cyberattacks. The aim of this work is to investigate how Software Engineering approaches could be leveraged to analyze the cyberattack propagation problem within an SoS. Such analysis is essential for an efficient SoS risk assessment performed early at the SoS design phase and required to protect the SoS from possibly high impact attacks affecting its safety and security. In order to achieve our objective, we present a model-driven analysis approach, based on Bayesian Networks, a sensitivity analysis and Common Vulnerability Scoring System (CVSS) with aim to discover potential cyberattacks propagation and estimate the probability of a security failure and its impact on SoS services. We illustrate this approach in an autonomous quarry example.
引用
收藏
页码:363 / 370
页数:8
相关论文
共 50 条
  • [1] Systems-of-systems concepts for collaborative enterprise networks
    Staker, RJ
    7TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL XVI, PROCEEDINGS: SYSTEMICS AND INFORMATION SYSTEMS, TECHNOLOGIES AND APPLICATION, 2003, : 347 - 352
  • [2] Evolving robust networks for systems-of-systems: is it viable for large networks?
    Jonathan M. Aitken
    Rob Alexander
    Tim Kelly
    Simon Poulding
    Empirical Software Engineering, 2014, 19 : 1502 - 1530
  • [3] Evolving robust networks for systems-of-systems: is it viable for large networks?
    Aitken, Jonathan M.
    Alexander, Rob
    Kelly, Tim
    Poulding, Simon
    EMPIRICAL SOFTWARE ENGINEERING, 2014, 19 (05) : 1502 - 1530
  • [4] Threat Analysis in Systems-of-Systems: An Emergence-Oriented Approach
    Ceccarelli, Andrea
    Zoppi, Tommaso
    vasenev, Alexandr
    Mori, Marco
    Ionita, Dan
    Montoya, Lorena
    Bondavalli, Andrea
    ACM TRANSACTIONS ON CYBER-PHYSICAL SYSTEMS, 2019, 3 (02)
  • [5] Towards a Risk Analysis Method for Systems-of-Systems Based on Systems Thinking
    Axelsson, Jakob
    Kobetski, Avenir
    12TH ANNUAL IEEE INTERNATIONAL SYSTEMS CONFERENCE (SYSCON2018), 2018, : 300 - 307
  • [6] A Security Framework for Systems-of-Systems
    Abou-Tair, Dhiah el Diehn I.
    Alouneh, Sahel
    Khalifeh, Ala
    Obermaisser, Roman
    ADVANCES IN COMPUTER SCIENCE AND UBIQUITOUS COMPUTING, 2018, 474 : 427 - 432
  • [7] System-of-Systems Resilience Analysis and Design Using Bayesian and Dynamic Bayesian Networks
    Jiao, Tianci
    Yuan, Hao
    Wang, Jing
    Ma, Jun
    Li, Xiaoling
    Luo, Aimin
    MATHEMATICS, 2024, 12 (16)
  • [8] Reliability Analysis of Phased-Mission Systems using Bayesian Networks
    Liu, Dong
    Zhang, Chunyuan
    Xing, Weiyan
    Li, Rui
    ANNUAL RELIABILITY AND MAINTAINABILITY SYMPOSIUM, 2008 PROCEEDINGS, 2008, : 21 - +
  • [9] Enabling Systems and the Adaptability of Complex Systems-of-Systems
    Adler, Charles O.
    Dagli, Cihan H.
    COMPLEX ADAPTIVE SYSTEMS 2012, 2012, 12 : 31 - 36
  • [10] Bayesian Networks as a tool for Epidemiological Systems Analysis
    Lewis, F. I.
    9TH INTERNATIONAL CONFERENCE ON MATHEMATICAL PROBLEMS IN ENGINEERING, AEROSPACE AND SCIENCES (ICNPAA 2012), 2012, 1493 : 610 - 617