首页> 外文会议>International Symposium on Software Reliability Engineering Workshops >On Computer-Aided Techniques for Supporting Safety and Security Co-Engineering
【24h】

On Computer-Aided Techniques for Supporting Safety and Security Co-Engineering

机译:论支持安全与安保协同工程的计算机辅助技术

获取原文

摘要

With the increasing system interconnectivity, cyberattacks on safety-critical systems can lead to catastrophic events. This calls for a better safety and security integration. Indeed, a safety assessment contains security relevant information, such as, key safety hazards, that shall not be triggered by cyber-attacks. Guidelines, such as, SAE J3061 and ED202A, already recommend to exchange information gathered by safety and security engineers during different phases of development. However, these guidelines do not specify exactly how and which information shall be exchanged. We propose a methodology for enabling computer aided techniques for extracting security relevant information from safety analysis. In particular, we propose techniques for automatically constructing Attack Trees from safety artefacts such as fault trees, hazard analysis and safety patterns. Lastly, we illustrate these techniques on an Industry 4.0 application.
机译:随着系统互连性的提高,对安全至关重要的系统的网络攻击可能导致灾难性事件。这要求更好的安全性和安全性集成。实际上,安全评估包含不应由网络攻击触发的与安全相关的信息,例如关键安全隐患。诸如SAE J3061和ED202A之类的指南已建议在开发的不同阶段交换安全和安保工程师收集的信息。但是,这些准则并未确切说明应如何以及交换哪些信息。我们提出了一种使计算机辅助技术能够从安全分析中提取与安全相关的信息的方法。特别是,我们提出了从安全构件(例如故障树,危害分析和安全模式)自动构建攻击树的技术。最后,我们在工业4.0应用程序上说明了这些技术。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号