paper-with-me

홈 › Papers

Towards automation of threat modeling based on a semantic model of attack patterns and weaknesses

2021-12-08 · Andrei Brazhuk

This works considers challenges of building and usage a formal knowledge base (model), which unites the ATT&CK, CAPEC, CWE, CVE security enumerations. The proposed model can be used to learn relations between attack techniques, attack pattern, weaknesses, and vulnerabilities in order to build various threat landscapes, in particular, for threat modeling. The model is created as an ontology with freely available datasets in the OWL and RDF formats. The use of ontologies is an alternative of structural and graph based approaches to integrate the security enumerations. In this work we consider an approach of threat modeling with the data components of ATT&CK based on the knowledge base and an ontology driven threat modeling framework. Also, some evaluations are made, how it can be possible to use the ontological approach of threat modeling and which challenges this can be faced.

📄 PDF Abstract BibTeX arXiv:2112.04231

Code (0)

등록된 구현이 없습니다.

Methods 이 논문이 사용한 방법론

BASE 설명 없음

Similar Papers 제목 키워드 기반

ASTRIDE: A Security Threat Modeling Platform for Agentic-AI Applications

2025-12-04 · Eranga Bandara, Amin Hass, Ross Gore, Sachin Shetty 외 arxiv

AI agent-based systems are becoming increasingly integral to modern software architectures, enabling autonomous decision-making, dynamic task execution, and multimodal interactions through large language models (LLMs). H…

Backdoor Attacks on Fault Detection and Localization in Cyber-Physical Systems

2026-05-26 · Abile Jean, Kuniyilh S arxiv

Cyber-Physical Systems (CPS) integrate sensing, communication, computation, and control to support critical infrastructure, including smart grids, industrial automation, and control systems. In the electrical utility dom…

A Large Language Model-Supported Threat Modeling Framework for Transportation Cyber-Physical Systems

2025-06-01 · M Sabbir Salek, Mashrur Chowdhury, Muhaimin Bin Munir, Yuchen Cai 외

Modern transportation systems rely on cyber-physical systems (CPS), where cyber systems interact seamlessly with physical systems like transportation-related sensors and actuators to enhance safety, mobility, and energy …

In-Context LearningLanguage ModelingLanguage ModellingLarge Language Model+2

AI Security Threats against Pervasive Robotic Systems: A Course for Next Generation Cybersecurity Workforce

2023-02-15 · Sudip Mittal, Jingdao Chen

Robotics, automation, and related Artificial Intelligence (AI) systems have become pervasive bringing in concerns related to security, safety, accuracy, and trust. With growing dependency on physical robots that work in …

Ethics

Graph of Effort: Quantifying Risk of AI Usage for Vulnerability Assessment

2025-03-20 · Anket Mehra, Andreas Aßmuth, Malte Prieß

With AI-based software becoming widely available, the risk of exploiting its capabilities, such as high automation and complex pattern recognition, could significantly increase. An AI used offensively to attack non-AI as…