• Home
  • Search
  • Application TRIKE Methodology When Modeling Threats to APCs Information Security
  • Cite Icon4
  • https://doi.org/10.1007/978-3-030-94202-1_42Copy DOI Icon

Application TRIKE Methodology When Modeling Threats to APCs Information Security

  • Jan 1, 2022
  • D Chernov
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Abstract In the modern world automation technologies of industrial processes have found wide application. Automated process control systems have become an important part of enterprises that operate in different economic fields and life support facilities all over the world. Nevertheless, the high growth of automation means raises the acute problem of providing APCs information security from external and internal threats. There are systematic reports in the media about new critical vulnerabilities in industrial equipment and attacks based on the exploitation of such vulnerabilities. When designing such systems it is necessary to estimate possible information security threats that already exist in the system or that are predicted to appear. That is why threat modeling is an important part of providing information security at industrial facilities using automation. In this work the author investigates the methodology of estimating threats to software security TRIKE. The research is aimed at finding general approaches to determine threat sources, tactics, and techniques for making implementation scenarios of threats to software information security, for applying them to provide cyber security of automated process control systems. In the frameworks of the subject mainstreaming, the research gives a description of cyber-attacks at big industrial facilities, and their basic vulnerabilities are emphasized. In the article the analysis of TRIKE methodology has been done. It is aimed at determining basic threat modeling stages applicable to industrial automation systems. The approach of TRIKE methodology to generating a list of threats to information security is formalized. To achieve the aims the author constructs DFD data flow diagrams with the decomposition of peculiar elements of the algorithm for modeling threats to information security of automated process control systems using TRIKE methodology.KeywordsAutomated process control systemsInformation securityThreatThreat modelTRIKEData flow diagramsAttack library

Similar Papers
  • Research Article

Информационная безопасность предприятия как технология обеспечения защиты информации

  • Jan 01, 2024
  • Innovative Economics and Law
  • I.V Shamrina +1
  • Research Article
  • Citations16

Business Security Architecture: Weaving Information Security into Your Organization's Enterprise Architecture through SABSA®

  • Jan 01, 2012
  • Information Security Journal: A Global Perspective
  • Jason S Burkett
  • Conference Article
  • Citations3

Method of identifying and assessing of automated process control systems vulnerable elements

  • Sep 12, 2019
  • Denis Chernov +1
  • Research Article

ФОРМУВАННЯ МОДЕЛІ ЗАБЕЗПЕЧЕННЯ ЗАХИСТУ ІНФОРМАЦІЇ НА ПІДПРИЄМСТВІ

  • Jan 01, 2022
  • International scientific journal "Internauka". Series: "Economic Sciences"
  • Alla Polyanska +1
  • Book Chapter

Visualization of a Spatio-Temportal Threat Model

  • Jan 01, 2021
  • A V Manzhosov +1
  • Research Article
  • Citations5

NPP APCS diagnostics implementation as a routine task of APCS

  • Jan 01, 2009
  • IFAC Proceedings Volumes
  • V.G Promyslov +1
  • Research Article
  • Citations1

Systemic issues of the power plants APCS development technology and performance paradigm

  • Dec 01, 2020
  • Journal of Physics: Conference Series
  • Yu S Tverskoy +5
  • PDF
  • Research Article
  • Citations2

THE DEVELOPMENT OF CORPORATE SECURITY IN THE CONTEXT OF COUNTERING THREATS TO DOING BUSINESS

  • Jun 15, 2021
  • Business: Theory and Practice
  • Taras Shyra +4
  • PDF
  • Research Article
  • Citations1

Development of multi-agent information security management system

  • Dec 21, 2022
  • Law and Safety
  • I P Khavina +2
  • PDF
  • Research Article
  • Citations2

International Experience of Legal Support of Information Security and the Possibilities for its Application in the Republic of Kazakhstan

  • Sep 15, 2020
  • Przegląd Politologiczny
  • Sholpan Zabikh
  • Research Article
  • Citations74

Information attacks and security in wireless sensor networks of industrial SCADA systems

  • Feb 09, 2017
  • Journal of Industrial Information Integration
  • Alexey G Finogeev +1
  • Conference Article

Simulation Model of the APCS for the Air and Gas Path in a Boiler

  • Oct 06, 2020
  • V.D Yakovlev +1
  • PDF
  • Research Article

INFORMATION SECURITY AS AN OBJECT OF REGULATION IN THE LAW OF UKRAINE

  • Jun 29, 2021
  • Przegląd Środkowo-Wschodni
  • Iryna Sopilko
  • Conference Article

Research on Trusted Programming Technology in Information Security

  • May 01, 2012
  • Jian-Ping Cai +1
  • Research Article

Evaluating the Perceived Impact of Collaborative Exchange and Formalization on Information Security

  • Jan 01, 2010
  • Journal of International Technology and Information Management
  • Randall Young
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.