Open this publication in new window or tab >>Show others...
2020 (English)In: Energy Informatics, ISSN 2520-8942, Vol. 3, no 1Article in journal (Refereed) Published
Abstract [en]
Cyber-attacks these threats, the cyber security assessment of IT and OT infrastructures can foster a higher degree of safety and resilience against cyber-attacks. Therefore, the use of attack simulations based on system architecture models is proposed. To reduce the effort of creating new attack graphs for each system under assessment, domain-specific languages (DSLs) can be employed. DSLs codify the common attack logics of the considered domain.Previously, MAL (the Meta Attack Language) was proposed, which serves as a framework to develop DSLs and generate attack graphs for modeled infrastructures. In this article, powerLang as a MAL-based DSL for modeling IT and OT infrastructures in the power domain is proposed. Further, it allows analyzing weaknesses related to known attacks. To comprise powerLang, two existing MAL-based DSL are combined with a new language focusing on industrial control systems (ICS). Finally, this first version of the language was validated against a known cyber-attack.
Place, publisher, year, edition, pages
Springer Nature, 2020
National Category
Computer Sciences
Identifiers
urn:nbn:se:kth:diva-286774 (URN)10.1186/s42162-020-00134-4 (DOI)2-s2.0-85107935018 (Scopus ID)
Note
QC 20220426
2020-11-282020-11-282022-12-20Bibliographically approved