A Benchmark of Security Metrics in Cyber-Physical Systems

被引:1
作者
Aigner, Andreas [1 ]
Khelil, Abdelmajid [1 ]
机构
[1] Landshut Univ Appl Sci, Dept Comp Sci, Landshut, Germany
来源
2020 IEEE INTERNATIONAL CONFERENCE ON SENSING, COMMUNICATION AND NETWORKING (SECONWORKSHOPS) | 2020年
关键词
Security Metrics; System Security; Security Analysis; Cyber-Physical Systems; Benchmark; System-of-Systems;
D O I
10.1109/seconworkshops50264.2020.9149779
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
the usage of connected devices and their role within our daily- and business life gains more and more impact. In addition, various derivations of Cyber-Physical Systems (CPS) reach new business fields, like smart healthcare or Industry 4.0. Although these systems do bring many advantages for users by extending the overall functionality of existing systems, they come with several challenges, especially for system engineers and architects. One key challenge consists in achieving a sufficiently high level of security within the CPS environment, as sensitive data or safety-critical functions are often integral parts of CPS. Being system of systems (SoS), CPS complexity, unpredictability and heterogeneity complicate analyzing the overall level of security, as well as providing a way to detect ongoing attacks. Usually, security metrics and frameworks provide an effective tool to measure the level of security of a given component or system. Although several comprehensive surveys exist, an assessment of the effectiveness of the existing solutions for CPS environments is insufficiently investigated in literature. In this work, we address this gap by benchmarking a carefully selected variety of existing security metrics in terms of their usability for CPS. Accordingly, we pinpoint critical CPS challenges and qualitatively assess the effectiveness of the existing metrics for CPS systems.
引用
收藏
页数:6
相关论文
共 21 条
[1]  
[Anonymous], 2014, ADV INFORM SECURITY
[2]   Measuring systems security [J].
Bayuk, Jennifer ;
Mostashari, Ali .
SYSTEMS ENGINEERING, 2013, 16 (01) :1-14
[3]  
Bringas P. Garcia, 2007, 18 INT C DAT EXP SYS
[4]   Aggregating CVSS Base Scores for Semantics-Rich Network Security Metrics [J].
Cheng, Pengsu ;
Wang, Lingyu ;
Jajodia, Sushil ;
Singhal, Anoop .
2012 31ST INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2012), 2012, :31-40
[5]   Model Checking the Information Flow Security of Real-Time Systems [J].
Gerking, Christopher ;
Schubert, David ;
Bodden, Eric .
ENGINEERING SECURE SOFTWARE AND SYSTEMS, ESSOS 2018, 2018, 10953 :27-43
[6]  
Johnstone M. N., 2010, P 8 AUSTR INFORM SEC
[7]   Architectural scoring framework for the creation and evaluation of System-Aware Cyber Security solutions [J].
Jones R.A. ;
Luckett B.A. ;
Beling P.A. ;
Horowitz B.M. .
Environment Systems and Decisions, 2013, 33 (3) :341-361
[8]  
Jonsson E., 2011, TECHNICAL REPORT
[9]  
Julisch K., 2009, TECHNICAL REPORT
[10]  
LeMay E., 2011, TECHNICAL REPORT