• DocumentCode
    3600999
  • Title

    P ^{2} CySeMoL: Predictive, Probabilistic Cyber Security Modeling Language

  • Author

    Holm, Hannes ; Shahzad, Khurram ; Buschle, Markus ; Ekstedt, Mathias

  • Author_Institution
    Dept. of Ind. Inf. & Control Syst., R. Inst. of Technol., Stockholm, Sweden
  • Volume
    12
  • Issue
    6
  • fYear
    2015
  • Firstpage
    626
  • Lastpage
    639
  • Abstract
    This paper presents the Predictive, Probabilistic Cyber Security Modeling Language (P2CySeMoL), an attack graph tool that can be used to estimate the cyber security of enterprise architectures. P2CySeMoL includes theory on how attacks and defenses relate quantitatively; thus, users must only model their assets and how these are connected in order to enable calculations. The performance of P2CySeMoL enables quick calculations of large object models. It has been validated on both a component level and a system level using literature, domain experts, surveys, observations, experiments and case studies.
  • Keywords
    estimation theory; formal languages; graph theory; probability; security of data; software architecture; P2CySeMoL; attack graph tool; cyber security estimation; enterprise architecture; predictive probabilistic cyber security modeling language; Computational modeling; Computer architecture; Computer security; Data models; Predictive models; Probabilistic logic; Computer security; attack graphs; risk management; security metrics;
  • fLanguage
    English
  • Journal_Title
    Dependable and Secure Computing, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1545-5971
  • Type

    jour

  • DOI
    10.1109/TDSC.2014.2382574
  • Filename
    6990572