Portunes: Representing attack scenarios spanning through the physical, digital and social domain

28Citations
Citations of this article
22Readers
Mendeley users who have this article in their library.
Get full text

Abstract

The security goals of an organization are realized through security policies, which concern physical security, digital security and security awareness. An insider is aware of these security policies, and might be able to thwart the security goals by combining physical, digital and social means. A systematic analysis of such attacks requires the whole environment where the insider operates to be formally represented. This paper presents Portunes, a framework which integrates all three security domains in a single environment. Portunes consists of a high-level abstraction model focusing on the relations between the three security domains and a lower abstraction level language able to represent the model and describe attacks which span the three security domains. Using the Portunes framework, we are able to represent a whole new family of attacks where the insider is not assumed to use purely digital actions to achieve a malicious goal. © 2010 Springer-Verlag.

Cite

CITATION STYLE

APA

Dimkov, T., Pieters, W., & Hartel, P. (2010). Portunes: Representing attack scenarios spanning through the physical, digital and social domain. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 6186 LNCS, pp. 112–129). https://doi.org/10.1007/978-3-642-16074-5_9

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free