• Title of article

    Integrating cyber attacks within fault trees

  • Author/Authors

    Igor Nai Fovino، نويسنده , , Igor and Masera، نويسنده , , Marcelo and De Cian، نويسنده , , Alessio، نويسنده ,

  • Issue Information
    روزنامه با شماره پیاپی سال 2009
  • Pages
    9
  • From page
    1394
  • To page
    1402
  • Abstract
    In this paper, a new method for quantitative security risk assessment of complex systems is presented, combining fault-tree analysis, traditionally used in reliability analysis, with the recently introduced Attack-tree analysis, proposed for the study of malicious attack patterns. The combined use of fault trees and attack trees helps the analyst to effectively face the security challenges posed by the introduction of modern ICT technologies in the control systems of critical infrastructures. The proposed approach allows considering the interaction of malicious deliberate acts with random failures. Formal definitions of fault tree and attack tree are provided and a mathematical model for the calculation of system fault probabilities is presented.
  • Keywords
    SECURITY , risk assessment , Fault tree , Attack tree
  • Journal title
    Reliability Engineering and System Safety
  • Serial Year
    2009
  • Journal title
    Reliability Engineering and System Safety
  • Record number

    1572483