Fifth International Conference on Information Technology: New Generations (itng 2008) Towards a Specification Prototype for Hierarchy-Driven Attack Patterns April 07-April 09 ISBN: 978-0-7695-3099-4
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ITNG.2008.23
We propose the characteristics of a software tool that leverages specifying attack pattern details in understandable hierarchies. These hierarchies are currently manually populated from the vast CAPEC dictionary which consume an excessive amount of human resources and are wrought with the possibility of user error. Such a software tool will not only automate the population of these attack pattern hierarchies, but also provide system prerequisite information and suggested mitigation strategies for the system under design. The combination of system prerequisites, possible attack patterns, and necessary mitigation strategies gives system designers and developers a checklist-like artifact to consider as development moves from the design phase to the implementation phase.
Index Terms:
Attack Trees, Attack Patterns, Refinement, Hierarchy
Citation:
Joshua James Pauli, Patrick Henry Engebretson, "Towards a Specification Prototype for Hierarchy-Driven Attack Patterns," itng, pp.1168-1169, Fifth International Conference on Information Technology: New Generations (itng 2008), 2008 Usage of this product signifies your acceptance of the Terms of Use. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||