Attack trees in Isabelle
Conference paper
Kammueller, F. 2018. Attack trees in Isabelle. 20th International Conference on Information and Communications Security, ICICS 2018. Lille, France 29 - 31 Oct 2018 Springer. pp. 611-628 https://doi.org/10.1007/978-3-030-01950-1_36
Type | Conference paper |
---|---|
Title | Attack trees in Isabelle |
Authors | Kammueller, F. |
Abstract | In this paper, we present a proof theory for attack trees. Attack trees are a well established and useful model for the construction of attacks on systems since they allow a stepwise exploration of high level attacks in application scenarios. Using the expressiveness of Higher Order Logic in Isabelle, we succeed in developing a generic theory of attack trees with a state-based semantics based on Kripke structures and CTL. The resulting framework allows mechanically supported logic analysis of the meta-theory of the proof calculus of attack trees and at the same time the developed proof theory enables application to case studies. A central correctness and completeness result proved in Isabelle establishes a connection between the notion of attack tree validity and CTL. The application is illustrated on the example of a healthcare IoT system and GDPR compliance verification. |
Conference | 20th International Conference on Information and Communications Security, ICICS 2018 |
Page range | 611-628 |
ISSN | 0302-9743 |
ISBN | |
Hardcover | 9783030019495 |
Publisher | Springer |
Publication dates | |
Online | 26 Oct 2018 |
Nov 2018 | |
Publication process dates | |
Deposited | 03 Jan 2019 |
Accepted | 01 Aug 2018 |
Output status | Published |
Accepted author manuscript | |
Copyright Statement | This is a post-peer-review, pre-copyedit version of an paper published in Information and Communications Security: 20th International Conference, ICICS 2018, Lille, France, October 29-31, 2018, Proceedings. The final authenticated version is available online at: http://dx.doi.org/10.1007/978-3-030-01950-1_36 |
Additional information | Paper published as: |
Digital Object Identifier (DOI) | https://doi.org/10.1007/978-3-030-01950-1_36 |
Language | English |
Book title | Information and Communications Security: 20th International Conference, ICICS 2018, Lille, France, October 29-31, 2018, Proceedings |
https://repository.mdx.ac.uk/item/88168
Download files
44
total views13
total downloads0
views this month0
downloads this month