Introducing distributed ledger security into system specifications with the Isabelle RR-cycle
Conference paper
Kammueller, F. 2024. Introducing distributed ledger security into system specifications with the Isabelle RR-cycle. 28th European Symposium on Research in Computer Security: 2nd International Workshop on System Security Assurance (SecAssure). The Hague, The Netherlands 29 - 29 Sep 2023 Springer. pp. 330-340 https://doi.org/10.1007/978-3-031-54129-2_19
Type | Conference paper |
---|---|
Title | Introducing distributed ledger security into system specifications with the Isabelle RR-cycle |
Authors | Kammueller, F. |
Abstract | We present an approach to developing secure system speci- fications for IoT systems with decentralized data using the Refinement- Risk cycle (RR-cycle), a method for security engineering implemented in the proof assistant Isabelle. The RR-cycle enables interleaving attack analysis with system refinement using rigorous machine assisted proof in Isabelle to scrutinize and refine system specifications until security requirements are met. We illustrate this approach by a case study of a privacy critical scenario by refining it with a distributed ledger. The case study is motivated by the IoT project SUCCESS on security and pri- vacy of healthcare IoT applications. We briefly summarize the RR-cycle method before focusing on its application of identifying a privacy attack that leads to a security refinement introducing the distributed ledger. |
Keywords | blockchain; Isabelle; privacy |
Sustainable Development Goals | 9 Industry, innovation and infrastructure |
Middlesex University Theme | Sustainability |
Research Group | SETA |
Conference | 28th European Symposium on Research in Computer Security: 2nd International Workshop on System Security Assurance (SecAssure) |
Page range | 330-340 |
Proceedings Title | Computer Security. ESORICS 2023 International Workshops: CPS4CIP, ADIoT, SecAssure, WASP, TAURIN, PriST-AI, and SECAI, The Hague, The Netherlands, September 25–29, 2023, Revised Selected Papers, Part II |
Series | Lecture Notes in Computer Science |
ISSN | 0302-9743 |
Electronic | 1611-3349 |
ISBN | |
Paperback | 9783031541285 |
Electronic | 9783031541292 |
Publisher | Springer |
Publication dates | |
Online | 12 Mar 2024 |
Publication process dates | |
Accepted | 01 Sep 2023 |
Deposited | 03 Dec 2024 |
Output status | Published |
Accepted author manuscript | File Access Level Open |
Digital Object Identifier (DOI) | https://doi.org/10.1007/978-3-031-54129-2_19 |
Web address (URL) of conference proceedings | https://doi.org/10.1007/978-3-031-54129-2 |
Language | English |
https://repository.mdx.ac.uk/item/yx9wv
Restricted files
Accepted author manuscript
2
total views1
total downloads2
views this month1
downloads this month