Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
The Cyber Security Modeling Language: A Tool for Assessing the Vulnerability of Enterprise System Architectures
KTH, Industriella informations- och styrsystem.
KTH, Industriella informations- och styrsystem.ORCID iD: 0000-0003-3922-9606
KTH, Industriella informations- och styrsystem.
Responsible organisation
2013 (English)In: IEEE Systems Journal, ISSN 1932-8184, E-ISSN 1937-9234, Vol. 7, no 3, p. 363-373Article in journal (Refereed) Published
Abstract [en]

The cyber security modeling language (CySeMoL) is a modeling language for enterprise-level system architectures coupled to a probabilistic inference engine. If the computer systems of an enterprise are modeled with CySeMoL, this inference engine can assess the probability that attacks on the systems will succeed. The theory used for the attack-probability calculations in CySeMoL is a compilation of research results on a number of security domains and covers a range of attacks and countermeasures. The theory has previously been validated on a component level. In this paper, the theory is also validated on a system level. A test indicates that the reasonableness and correctness of CySeMoL assessments compare with the reasonableness and correctness of the assessments of a security professional. CySeMoL's utility has been tested in case studies.

Place, publisher, year, edition, pages
IEEE Press , 2013. Vol. 7, no 3, p. 363-373
Keywords [en]
Computer security, expert systems, risk analysis, supervisory control and data acquisition (SCADA) systems
National Category
Computer Systems
Research subject
FOI-portföljer, Äldre portföljer
Identifiers
URN: urn:nbn:se:trafikverket:diva-12464DOI: 10.1109/JSYST.2012.2221853ISI: 000321641800003Scopus ID: 2-s2.0-84880572592OAI: oai:DiVA.org:trafikverket-12464DiVA, id: diva2:1822536
Projects
Säkerhet i industriella styrsystem för kritisk infrastruktur
Funder
Swedish Transport Administration, TRV 2010/92167Available from: 2023-12-22 Created: 2023-12-22 Last updated: 2023-12-22

Open Access in DiVA

fulltext(593 kB)146 downloads
File information
File name FULLTEXT01.pdfFile size 593 kBChecksum SHA-512
feeed1526f403e1c5be952f6910c200487fa62f08b515a8876e038f39c215bc032bd1cbe2e2f311eb1450f5fad97c3fb2c6e44d61e4acb80b3959cf3cca03553
Type fulltextMimetype application/pdf

Other links

Publisher's full textScopusIEEEXplore

Authority records

Ekstedt, Mathias

Search in DiVA

By author/editor
Ekstedt, Mathias
In the same journal
IEEE Systems Journal
Computer Systems

Search outside of DiVA

GoogleGoogle Scholar
Total: 146 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

doi
urn-nbn

Altmetric score

doi
urn-nbn
Total: 473 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf