Looking for a Black Cat in a Dark Room: Security Visualization for Cyber-Physical System Design and Analysis

Georgios Bakirtzis, Brandon J. Simon, Cody H. Fleming, Carl R. Elks

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Today, there is a plethora of software security tools employing visualizations that enable the creation of useful and effective interactive security analyst dashboards. Such dashboards can assist the analyst to understand the data at hand and, consequently, to conceive more targeted preemption and mitigation security strategies. Despite the recent advances, model-based security analysis is lacking tools that employ effective dashboards∗to manage potential attack vectors, system components, and requirements. This problem is further exacerbated because model-based security analysis produces significantly larger result spaces than security analysis applied to realized systems∗where platform specific information, software versions, and system element dependencies are known. Therefore, there is a need to manage the analysis complexity in model-based security through better visualization techniques. Towards that goal, we propose an interactive security analysis dashboard that provides different views largely centered around the system, its requirements, and its associated attack vector space. This tool makes it possible to start analysis earlier in the system lifecycle. We apply this tool in a significant area of engineering design∗the design of cyber-physical systems∗where security violations can lead to safety hazards.

Original languageEnglish
Title of host publication2018 IEEE Symposium on Visualization for Cyber Security, VizSec 2018
EditorsStoney Trent, Jorn Kohlhammer, Graig Sauer, Robert Gove, Daniel Best, Celeste Lyn Paul, Nicolas Prigent, Diane Staheli
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781538681947
DOIs
Publication statusPublished - 7 May 2019
Externally publishedYes
Event2018 IEEE Symposium on Visualization for Cyber Security, VizSec 2018 - Berlin, Germany
Duration: 22 Oct 2018 → …

Publication series

Name2018 IEEE Symposium on Visualization for Cyber Security, VizSec 2018

Conference

Conference2018 IEEE Symposium on Visualization for Cyber Security, VizSec 2018
Country/TerritoryGermany
CityBerlin
Period22/10/18 → …

Keywords

  • Embedded systems security
  • Graph drawings
  • Human-centered computing
  • Human-centered computing
  • Security and privacy
  • Security and privacy
  • Security in hardware
  • Systems Security
  • Visualization
  • Visualization
  • Visualization systems and tools
  • Visualization techniques
  • Visualization toolkits
  • Vulnerability management

Fingerprint

Dive into the research topics of 'Looking for a Black Cat in a Dark Room: Security Visualization for Cyber-Physical System Design and Analysis'. Together they form a unique fingerprint.

Cite this