Attack tree analysis for insider threats on the IoT using Isabelle
Conference paper
Kammueller, F., Nurse, J. and Probst, C. 2016. Attack tree analysis for insider threats on the IoT using Isabelle. 4th International Conference on Human Aspects of Security, Privacy and Trust, HCII-HAS 2016. Toronto, ON, Canada 17 - 24 Jul 2016 Springer International. pp. 234-246 https://doi.org/10.1007/978-3-319-39381-0_21
Type | Conference paper |
---|---|
Title | Attack tree analysis for insider threats on the IoT using Isabelle |
Authors | Kammueller, F., Nurse, J. and Probst, C. |
Abstract | The Internet-of-Things (IoT) aims at integrating small devices around humans. The threat from human insiders in “regular” organisations is real; in a fully-connected world of the IoT, organisations face a substantially more severe security challenge due to unexpected access possibilities and information flow. In this paper, we seek to illustrate and classify insider threats in relation to the IoT (by ‘smart insiders’), exhibiting attack vectors for their characterisation. To model the attacks we apply a method of formal modelling of Insider Threats in the interactive theorem prover Isabelle. On the classified IoT attack examples, we show how this logical approach can be used to make the models more precise and to analyse the previously identified Insider IoT attacks using Isabelle attack trees |
Conference | 4th International Conference on Human Aspects of Security, Privacy and Trust, HCII-HAS 2016 |
Page range | 234-246 |
ISSN | 0302-9743 |
ISBN | |
Hardcover | 9783319393803 |
Publisher | Springer International |
Publication dates | |
Online | 21 Jun 2016 |
Publication process dates | |
Deposited | 04 May 2016 |
Accepted | 03 Jan 2016 |
Output status | Published |
Accepted author manuscript | |
Copyright Statement | The final publication is available at Springer via https://doi.org/10.1007/978-3-319-39381-0_21 |
Additional information | Paper published as: |
Digital Object Identifier (DOI) | https://doi.org/10.1007/978-3-319-39381-0_21 |
Language | English |
Book title | Human Aspects of Information Security, Privacy, and Trust: 4th International Conference, HAS 2016, Held as Part of HCI International 2016, Toronto, ON, Canada, July 17-22, 2016, Proceedings |
https://repository.mdx.ac.uk/item/865qz
Download files
55
total views27
total downloads1
views this month2
downloads this month