Publication | Closed Access
A Generic Metamodel for IT Security Attack Modeling for Distributed Systems
14
Citations
10
References
2010
Year
Unknown Venue
EngineeringInformation SecuritySoftware EngineeringSoftware AnalysisSecurity ModellingAttack SimulationSystems EngineeringInternet Of ThingsSecurity AspectsIt SecuritySecure ProtocolNetwork SecurityComputer EngineeringSecure By DesignDistributed SystemsComputer ScienceSoftware DesignData SecurityCryptographySecurityGeneric MetamodelThreat ModelComputer Security ModelModel-driven Security
Understanding and discussing the security aspects of IT systems during their development is challenging for both domain specialists and IT experts - neglecting this aspect leads to communication problems and, eventually, to less secure systems. An important factor for these challenges is the distribution and variety of basic IT security concepts, attacks, and countermeasures, e.g., in the standard literature. In this paper, we propose a generic metamodel for IT security capturing both its major concepts and their relationships to each other. With a focus on attacks, we show how this model is applied to different scenarios in distributed systems, i.e., Peer-to-Peer systems, Service-oriented Architectures, and Mobile ad hoc Networks. This allows for a better understanding of IT security in general and attacks in particular, thus, enabling effective communication between different parties during the development of security-critical IT systems.
| Year | Citations | |
|---|---|---|
Page 1
Page 1