Conference proceeding
Applied Vulnerability Detection System
2015 IEEE International Symposium on Technologies for Homeland Security (HST), pp.1-6
04/01/2015
DOI: 10.1109/THS.2015.7225296
Abstract
In [1], we presented a Vulnerability Detection System (VDS) that can detect emergent vulnerabilities in complex Cyber Physical Systems (CPS). It used the attacker's point of view by collecting a target system's vulnerability information from varied sources, and populating a Attack Point (AP) database. From these APs, a Hierarchical Task Network generated the set of composite device-level attack scenarios. The VDS used Alloy [2] to reduce the cardinality of the generated space by evaluating the feasibility of each attack. This paper specializes prior research by submitting the generated prioritized list to an automotive-specific Attack Evaluation Process (AAEP). With a combination of simulation and vehicle instrumented real-time execution, the AAEP confirms each candidate attack. The AAEPs output is used as feedback to refine the Alloy model. VDS is designed to support short product release cycles. The AAEP separates domain-specific from domain-independent aspects so the VDS can be rapidly retargeted.
Details
- Title: Subtitle
- Applied Vulnerability Detection System
- Creators
- Jeffrey Smith - BAE SystemsBasil Krikeles - BAE SystemsDavid K. Wittenberg - BAE SystemsMikael Taveniku - XCube Technologies, Nashua, NH, United States
- Resource Type
- Conference proceeding
- Publication Details
- 2015 IEEE International Symposium on Technologies for Homeland Security (HST), pp.1-6
- Publisher
- IEEE
- DOI
- 10.1109/THS.2015.7225296
- Language
- English
- Date published
- 04/01/2015
- Academic Unit
- Cinematic Arts; English
- Record Identifier
- 9984397928902771
Metrics
1 Record Views