Semi-automatically Augmenting Attack Trees using an Annotated Attack Tree LibraryJhawar, Ravi ; Lounis, Karim ; Mauw, Sjouke et alin Katsikas, Sokratis; Alcaraz, Cristina (Eds.) Security and Trust Management. STM 2018. (2018, October) Detailed reference viewed: 302 (5 UL) Model-driven situational awareness for moving target defenseJhawar, Ravi ; Mauw, Sjouke ![]() in Scanlon, Marc; Le-Khac, Nhien-An (Eds.) Proc. 16th European Conference on Cyber Warfare and Security (2017) Moving Target Defense (MTD) presents dynamically changing attack surfaces and system configurations to attackers. This approach decreases the success probabilities of attacks and increases attacker's ... [more ▼] Moving Target Defense (MTD) presents dynamically changing attack surfaces and system configurations to attackers. This approach decreases the success probabilities of attacks and increases attacker's workload since she must continually re-assess, re-engineer and re-launch her attacks. Existing research has provided a number of MTD techniques but approaches for gaining situational awareness and deciding when/how to apply these techniques are not well studied. In this paper, we present a conceptual framework that closely integrates a set of models with the system and obtains up-to-date situational awareness following the OODA loop methodology. To realize the framework, as the first step, we propose a modelling approach that provides insights about the dynamics between potential attacks and defenses, impact of attacks and adaptations on the system, and the state of the system. Based on these models, we demonstrate techniques to quantitatively assess the effectiveness of MTD and show how to formulate decision-making problems. [less ▲] Detailed reference viewed: 171 (2 UL) A Stochastic Framework for Quantitative Analysis of Attack-Defense TreesJhawar, Ravi ; Lounis, Karim ; Mauw, Sjouke ![]() in 12th International Workshop on Security and Trust Management (2016) Detailed reference viewed: 275 (5 UL) Automating Cyber Defense Response Using Attack-Defence Trees and Game TheoryJhawar, Ravi ; ; in The 15th European Conference on Cyber Warfare and Security (2016) Detailed reference viewed: 157 (2 UL) Attack trees for practical security assessment: ranking of attack scenarios with ADTool 2.0Gadyatskaya, Olga ; Jhawar, Ravi ; Kordy, Piotr et alin Quantitative Evaluation of Systems - 13th International Conference (2016) Detailed reference viewed: 337 (8 UL) Attack Trees with Sequential ConjunctionJhawar, Ravi ; ; Mauw, Sjouke et alin Proceedings of the 30th IFIP TC 11 International Conference ICT Systems Security and Privacy Protection (SEC 2015) (2015) Detailed reference viewed: 215 (7 UL) |
||