Using Bayesian Networks for a Cyberattacks Propagation Analysis in Systems-of-Systems

被引:6
作者
El Hachem, Jamal [1 ]
Sedaghatbaf, Ali [2 ]
Lisova, Elena [2 ]
Causevic, Aida [2 ]
机构
[1] Univ Pau & Pays Adour, LIUPPA, Pau, France
[2] Malardalen Univ, Vasteras, Sweden
来源
2019 26TH ASIA-PACIFIC SOFTWARE ENGINEERING CONFERENCE (APSEC) | 2019年
关键词
Systems-of-Systems; Service Oriented Architectures; Bayesian Networks; Cyberattacks; SECURITY;
D O I
10.1109/APSEC48747.2019.00056
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
System of Systems (SoS) represent a set of independent Constituent Systems (CS) that collaborate in order to provide functionalities that they are unable to achieve independently. We consider SoS as a set of connected services that needs to be adequately protected. The integration of these independent, evolutionary and distributed systems, intensifies SoS complexity and emphasizes the behavior uncertainty, which makes an SoS security analysis a critical challenge. One of the major priorities when designing SoS, is to analyze the unknown dependencies among CS services and vulnerabilities leading to potential cyberattacks. The aim of this work is to investigate how Software Engineering approaches could be leveraged to analyze the cyberattack propagation problem within an SoS. Such analysis is essential for an efficient SoS risk assessment performed early at the SoS design phase and required to protect the SoS from possibly high impact attacks affecting its safety and security. In order to achieve our objective, we present a model-driven analysis approach, based on Bayesian Networks, a sensitivity analysis and Common Vulnerability Scoring System (CVSS) with aim to discover potential cyberattacks propagation and estimate the probability of a security failure and its impact on SoS services. We illustrate this approach in an autonomous quarry example.
引用
收藏
页码:363 / 370
页数:8
相关论文
共 50 条
[41]   A Systematic Literature Review on Knowledge Representation Approaches for Systems-of-Systems [J].
Abdalla, Gabriel ;
Damasceno, Carlos Diego N. ;
Guessi, Milena ;
Oquendo, Flavio ;
Nakagawa, Elisa Yumi .
PROCEEDINGS 2015 NINTH BRAZILIAN SYMPOSIUM ON SOFTWARE COMPONENTS, ARCHITECTURES AND REUSE - SBCARS 2015, 2015, :70-79
[42]   Mediators in Systems-of-Systems and Ecosystems: A Systematic Literature Review and Conceptualization [J].
Axelsson, Jakob .
PROCEEDINGS OF THE 2024 IEEE/ACM 12TH INTERNATIONAL WORKSHOP ON SOFTWARE ENGINEERING FOR SYSTEMS-OF-SYSTEMS AND SOFTWARE ECOSYSTEMS, SESOS 2024, 2024, :21-28
[43]   Brittleness analysis of weapon equipment system of systems based on Bayesian networks [J].
Gao L. ;
Miao W. ;
Jiang X. ;
Chen L. ;
Ye J. ;
Zhang Y. .
Zhongguo Kexue Jishu Kexue/Scientia Sinica Technologica, 2023, 53 (09) :1522-1532
[44]   Improving the analysis of dependable systems by mapping fault trees into Bayesian networks [J].
Bobbio, A ;
Portinale, L ;
Minichino, M ;
Ciancamerla, E .
RELIABILITY ENGINEERING & SYSTEM SAFETY, 2001, 71 (03) :249-260
[45]   Bayesian networks based reliability analysis of phased-mission systems [J].
School of Computer, National University of Defense Technology, Changsha 410073, China ;
不详 ;
不详 .
Jisuanji Xuebao, 2008, 10 (1814-1825) :1814-1825
[46]   A Formal Model-Based Approach to Engineering Systems-of-Systems [J].
Fitzgerald, John ;
Bryans, Jeremy ;
Payne, Richard .
COLLABORATIVE NETWORKS IN THE INTERNET OF SERVICES, 2012, 380 :53-62
[47]   Employing Discrete Controller Synthesis for Developing Systems-of-Systems Controllers [J].
Li, Jialong ;
Manzano, Wallace ;
Yamauchi, Takuto ;
Matsuyama, Nobuhiro ;
Nakagawa, Elisa Yumi ;
Tei, Kenji .
PROCEEDINGS OF THE 2024 IEEE/ACM 12TH INTERNATIONAL WORKSHOP ON SOFTWARE ENGINEERING FOR SYSTEMS-OF-SYSTEMS AND SOFTWARE ECOSYSTEMS, SESOS 2024, 2024, :1-8
[48]   Fuzzy evidence theory and Bayesian networks for process systems risk analysis [J].
Yazdi, Mohammad ;
Kabir, Sohag .
HUMAN AND ECOLOGICAL RISK ASSESSMENT, 2020, 26 (01) :57-86
[49]   Applying Systems Engineering in Tactical Wireless Network Analysis with Bayesian Networks [J].
Chan, Philip ;
Mansuri, Mo ;
Man, Hong .
2010 SECOND INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE, COMMUNICATION SYSTEMS AND NETWORKS (CICSYN), 2010, :208-215
[50]   Bridging Missions and Architecture in Software-intensive Systems-of-Systems [J].
Silva, Eduardo ;
Cavalcante, Everton ;
Batista, Thais ;
Oquendo, Flavio .
2016 21ST INTERNATIONAL CONFERENCE ON ENGINEERING OF COMPLEX COMPUTER SYSTEMS (ICECCS 2016), 2016, :201-206