Cristin-resultat-ID: 40804
Sist endret: 30. juli 2013, 13:16
NVI-rapporteringsår: 2010
Resultat
Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
2010

Towards a hacker attack representation method

Bidragsytere:
  • Peter Karpati
  • Guttorm Sindre og
  • Andreas Lothe Opdahl

Bok

Proceedings of the Fifth International Conference on Software and Data Technologies
ISBN:
  • 978-989-8425-23-2

Utgiver

Institute for Systems and Technologies of Information, Control and Communication
NVI-nivå 1

Om resultatet

Vitenskapelig Kapittel/Artikkel/Konferanseartikkel
Publiseringsår: 2010
Sider: 92 - 101
ISBN:
  • 978-989-8425-23-2

Beskrivelse Beskrivelse

Tittel

Towards a hacker attack representation method

Sammendrag

Security must be addressed at an early stage of information systems development, and one must learn from previous hacker attacks to avoid similar exploits in the future. Many security threats are hard to understand for stakeholders with a less technical background. To address this issue, we present a five-step method that represents hacker intrusions diagrammatically. It lifts specific intrusions to a more general level of modelling and distils them into threats that should be avoided by a new or modified IS design. It allows involving different stakeholder groups in the process, including non-technical people who prefer simple, informal representations. For this purpose, the method combines five different representation techniques that together provide an integrated view of security attacks and system architecture. The method is illustrated with a real intrusion from the literature, and its representation techniques are tied together as a set of extensions of the UML metamodel.

Bidragsytere

Peter Karpati

  • Tilknyttet:
    Forfatter
    ved Institutt for datateknologi og informatikk ved Norges teknisk-naturvitenskapelige universitet

Guttorm Sindre

  • Tilknyttet:
    Forfatter
    ved Institutt for datateknologi og informatikk ved Norges teknisk-naturvitenskapelige universitet
Aktiv cristin-person

Andreas Lothe Opdahl

  • Tilknyttet:
    Forfatter
    ved Institutt for informasjons- og medievitenskap ved Universitetet i Bergen
1 - 3 av 3

Resultatet er en del av Resultatet er en del av

Proceedings of the Fifth International Conference on Software and Data Technologies.

Cordeiro, José. 2010, Institute for Systems and Technologies of Information, Control and Communication. Vitenskapelig antologi/Konferanseserie
1 - 1 av 1