Title :
P
CySeMoL: Predictive, Probabilistic Cyber Security Modeling Language
Author :
Holm, Hannes ; Shahzad, Khurram ; Buschle, Markus ; Ekstedt, Mathias
Author_Institution :
Dept. of Ind. Inf. & Control Syst., R. Inst. of Technol., Stockholm, Sweden
Abstract :
This paper presents the Predictive, Probabilistic Cyber Security Modeling Language (P2CySeMoL), an attack graph tool that can be used to estimate the cyber security of enterprise architectures. P2CySeMoL includes theory on how attacks and defenses relate quantitatively; thus, users must only model their assets and how these are connected in order to enable calculations. The performance of P2CySeMoL enables quick calculations of large object models. It has been validated on both a component level and a system level using literature, domain experts, surveys, observations, experiments and case studies.
Keywords :
estimation theory; formal languages; graph theory; probability; security of data; software architecture; P2CySeMoL; attack graph tool; cyber security estimation; enterprise architecture; predictive probabilistic cyber security modeling language; Computational modeling; Computer architecture; Computer security; Data models; Predictive models; Probabilistic logic; Computer security; attack graphs; risk management; security metrics;
Journal_Title :
Dependable and Secure Computing, IEEE Transactions on
DOI :
10.1109/TDSC.2014.2382574