Using Bayesian Networks for a Cyberattacks Propagation Analysis in Systems-of-Systems

被引:6
|
作者
El Hachem, Jamal [1 ]
Sedaghatbaf, Ali [2 ]
Lisova, Elena [2 ]
Causevic, Aida [2 ]
机构
[1] Univ Pau & Pays Adour, LIUPPA, Pau, France
[2] Malardalen Univ, Vasteras, Sweden
关键词
Systems-of-Systems; Service Oriented Architectures; Bayesian Networks; Cyberattacks; SECURITY;
D O I
10.1109/APSEC48747.2019.00056
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
System of Systems (SoS) represent a set of independent Constituent Systems (CS) that collaborate in order to provide functionalities that they are unable to achieve independently. We consider SoS as a set of connected services that needs to be adequately protected. The integration of these independent, evolutionary and distributed systems, intensifies SoS complexity and emphasizes the behavior uncertainty, which makes an SoS security analysis a critical challenge. One of the major priorities when designing SoS, is to analyze the unknown dependencies among CS services and vulnerabilities leading to potential cyberattacks. The aim of this work is to investigate how Software Engineering approaches could be leveraged to analyze the cyberattack propagation problem within an SoS. Such analysis is essential for an efficient SoS risk assessment performed early at the SoS design phase and required to protect the SoS from possibly high impact attacks affecting its safety and security. In order to achieve our objective, we present a model-driven analysis approach, based on Bayesian Networks, a sensitivity analysis and Common Vulnerability Scoring System (CVSS) with aim to discover potential cyberattacks propagation and estimate the probability of a security failure and its impact on SoS services. We illustrate this approach in an autonomous quarry example.
引用
收藏
页码:363 / 370
页数:8
相关论文
共 50 条
  • [1] Safety Analysis for Systems-of-Systems
    Axelsson, Jakob
    ERCIM NEWS, 2015, (102): : 22 - 23
  • [2] Systems-of-systems concepts for collaborative enterprise networks
    Staker, RJ
    7TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL XVI, PROCEEDINGS: SYSTEMICS AND INFORMATION SYSTEMS, TECHNOLOGIES AND APPLICATION, 2003, : 347 - 352
  • [3] Evolving robust networks for systems-of-systems: is it viable for large networks?
    Jonathan M. Aitken
    Rob Alexander
    Tim Kelly
    Simon Poulding
    Empirical Software Engineering, 2014, 19 : 1502 - 1530
  • [4] Evolving robust networks for systems-of-systems: is it viable for large networks?
    Aitken, Jonathan M.
    Alexander, Rob
    Kelly, Tim
    Poulding, Simon
    EMPIRICAL SOFTWARE ENGINEERING, 2014, 19 (05) : 1502 - 1530
  • [5] Systems-of-systems analysis of national infrastructure
    Hall, Jim W.
    Henriques, Justin J.
    Hickford, Adrian J.
    Nicholls, Robert J.
    PROCEEDINGS OF THE INSTITUTION OF CIVIL ENGINEERS-ENGINEERING SUSTAINABILITY, 2013, 166 (05) : 249 - 257
  • [6] Using Bayesian belief networks to predict change propagation in software systems
    Mirarab, Siavash
    Hassouna, Alaa
    Tahvildari, Ladan
    ICPC 2007: 15TH IEEE INTERNATIONAL CONFERENCE ON PROGRAM COMPREHENSION, PROCEEDINGS, 2007, : 177 - +
  • [7] Challenges for modelling and analysis in embedded systems and systems-of-systems design
    Haverkort, Boudewijn R.
    ELECTRONIC PROCEEDINGS IN THEORETICAL COMPUTER SCIENCE, 2013, (133): : 40 - 46
  • [8] Economic Feasibility Analysis of Photovoltaic Systems Using Bayesian Networks
    Shakouri, Mahmoud
    Lee, Hyun Woo
    CONSTRUCTION RESEARCH CONGRESS 2018: SUSTAINABLE DESIGN AND CONSTRUCTION AND EDUCATION, 2018, : 564 - 573
  • [9] Towards a Risk Analysis Method for Systems-of-Systems Based on Systems Thinking
    Axelsson, Jakob
    Kobetski, Avenir
    12TH ANNUAL IEEE INTERNATIONAL SYSTEMS CONFERENCE (SYSCON2018), 2018, : 300 - 307
  • [10] Systems-of-Systems Network Engineering
    Bath, William G.
    Miller, Gregory A.
    JOHNS HOPKINS APL TECHNICAL DIGEST, 2012, 31 (01): : 21 - 30