{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,28]],"date-time":"2025-03-28T01:17:43Z","timestamp":1743124663389,"version":"3.40.3"},"publisher-location":"Cham","reference-count":24,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031563256"},{"type":"electronic","value":"9783031563263"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-56326-3_3","type":"book-chapter","created":{"date-parts":[[2024,4,23]],"date-time":"2024-04-23T07:02:12Z","timestamp":1713855732000},"page":"30-44","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Hierarchical Model-Based Cybersecurity Risk Assessment During System Design"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8319-9876","authenticated-orcid":false,"given":"Tino","family":"Jungebloud","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8607-2299","authenticated-orcid":false,"given":"Nhung","family":"H. Nguyen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2605-187X","authenticated-orcid":false,"given":"Dong","family":"Seong Kim","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7439-7686","authenticated-orcid":false,"given":"Armin","family":"Zimmermann","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,4,24]]},"reference":[{"key":"3_CR1","unstructured":"Cai, Z., Wang, A., Zhang, W.: 0-days & Mitigations: Roadways to Exploit and Secure Connected BMW Cars (2019)"},{"key":"3_CR2","doi-asserted-by":"crossref","unstructured":"Enoch, S.Y., Ge, M., Hong, J.B., Kim, D.S.: Model-based cybersecurity analysis: past work and future directions. In: 2021 Annual Reliability and Maintainability Symposium (RAMS) (2021)","DOI":"10.1109\/RAMS48097.2021.9605784"},{"key":"3_CR3","unstructured":"Enoch, S.Y., Hong, J.B., Ge, M., Kim, D.S.: Composite metrics for network security analysis (2020)"},{"key":"3_CR4","doi-asserted-by":"publisher","first-page":"107934","DOI":"10.1016\/j.comnet.2021.107934","volume":"189","author":"SY Enoch","year":"2021","unstructured":"Enoch, S.Y., Lee, J.S., Kim, D.S.: Novel security models, metrics and security assessment for maritime vessel networks. Comput. Netw. 189, 107934 (2021)","journal-title":"Comput. Netw."},{"key":"3_CR5","unstructured":"European Organisation for Civil Aviation Equipment: ED-202A - Airworthiness Security Process Specification (2014)"},{"key":"3_CR6","unstructured":"European Organisation for Civil Aviation Equipment: ED-203A - Airworthiness Security Methods and Considerations (2018)"},{"key":"3_CR7","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3467021","volume":"22","author":"M Ge","year":"2021","unstructured":"Ge, M., Cho, J.H., Kim, D., Dixit, G., Chen, I.R.: Proactive defense for internet-of-things: moving target defense with cyberdeception. ACM Trans. Internet Technol. 22, 1\u201331 (2021)","journal-title":"ACM Trans. Internet Technol."},{"key":"3_CR8","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1016\/j.jnca.2017.01.033","volume":"83","author":"M Ge","year":"2017","unstructured":"Ge, M., Hong, J.B., Guttmann, W., Kim, D.S.: A framework for automating security analysis of the Internet of Things. J. Netw. Comput. Appl. 83, 12\u201327 (2017)","journal-title":"J. Netw. Comput. Appl."},{"key":"3_CR9","doi-asserted-by":"crossref","unstructured":"Hammer, M., Maschotta, R., Wichmann, A., Jungebloud, T., Bedini, F., Zimmermann, A.: A model-driven implementation of PSCs specification for C++. In: Proceedings of the 9th International Conference on Model-Driven Engineering and Software Development (2022)","DOI":"10.5220\/0010267801000109"},{"key":"3_CR10","unstructured":"Hong, J.B., Kim, D.S.: HARMs: hierarchical attack representation models for network security analysis. In: 10th Australian Information Security Management Conference (2012)"},{"key":"3_CR11","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1109\/TDSC.2015.2443790","volume":"13","author":"JB Hong","year":"2016","unstructured":"Hong, J.B., Kim, D.S.: Assessing the effectiveness of moving target defenses using security models. IEEE Trans. Dependable Secure Comput. 13, 163\u2013177 (2016)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"3_CR12","unstructured":"MITRE: CAPEC - Common Attack Pattern Enumeration and Classification (2023). https:\/\/capec.mitre.org"},{"key":"3_CR13","unstructured":"MITRE: CWE - Common Weakness Enumeration (2023). https:\/\/cwe.mitre.org"},{"key":"3_CR14","doi-asserted-by":"crossref","unstructured":"Monteuuis, J.P., Boudguiga, A., Zhang, J., Labiod, H., Servel, A., Urien, P.: SARA: security automotive risk analysis method. In: Proceedings of the 4th ACM Workshop on Cyber-Physical System Security, pp. 3\u201314 (2018)","DOI":"10.1145\/3198458.3198465"},{"key":"3_CR15","unstructured":"Nie, S., Liu, L., Du, Y.: Hacking Tesla From Wireless to CAN BUS (2017)"},{"key":"3_CR16","unstructured":"OBEO: UML Designer (2023). https:\/\/www.umldesigner.org"},{"key":"3_CR17","unstructured":"Object Management Group: Unified Modeling Language, Version 2.5.1 (2017)"},{"key":"3_CR18","unstructured":"Object Management Group: Systems Modeling Language, Version 1.6 (2019)"},{"key":"3_CR19","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-030-16874-2_1","volume-title":"Security and Safety Interplay of Intelligent Software Systems","author":"G Pedroza","year":"2019","unstructured":"Pedroza, G.: Towards safety and security co-engineering: challenging aspects for a consistent intertwining. In: Hamid, B., Gallina, B., Shabtai, A., Elovici, Y., Garcia-Alfaro, J. (eds.) CSITS ISSA 2018. LNCS, vol. 11552, pp. 3\u201316. Springer, Cham (2019). https:\/\/doi.org\/10.1007\/978-3-030-16874-2_1"},{"key":"3_CR20","doi-asserted-by":"crossref","unstructured":"Pedroza, G., Mockly, G.: Method and framework for security risks analysis guided by safety criteria. In: 23rd ACM\/IEEE International Conference on Model Driven Engineering Languages and Systems (2020)","DOI":"10.1145\/3417990.3420047"},{"key":"3_CR21","doi-asserted-by":"crossref","unstructured":"Roudier, Y., Apvrille, L.: SysML-Sec - a model driven approach for designing safe and secure systems. In: 2015 3rd International Conference on Model-Driven Engineering and Software Development (MODELSWARD) (2015)","DOI":"10.1109\/ACVI.2016.6"},{"key":"3_CR22","doi-asserted-by":"crossref","unstructured":"Shaked, A., Reich, Y.: Model-based threat and risk assessment for systems design. In: Proceedings of the 7th International Conference on Information Systems Security and Privacy (2021)","DOI":"10.5220\/0010187203310338"},{"key":"3_CR23","unstructured":"SSE: Model-driven Software Engineering for C++ (2023). https:\/\/github.com\/MDE4CPP"},{"key":"3_CR24","unstructured":"SSE: UML Designer - TUI.SSE branch (2023). https:\/\/github.com\/MDE4CPP"}],"container-title":["IFIP Advances in Information and Communication Technology","ICT Systems Security and Privacy Protection"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-56326-3_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,16]],"date-time":"2024-11-16T21:28:12Z","timestamp":1731792492000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-56326-3_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031563256","9783031563263"],"references-count":24,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-56326-3_3","relation":{},"ISSN":["1868-4238","1868-422X"],"issn-type":[{"type":"print","value":"1868-4238"},{"type":"electronic","value":"1868-422X"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"24 April 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SEC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP International Conference on ICT Systems Security and Privacy Protection","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Poznan","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Poland","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 June 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 June 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"38","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"sec2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/ifipsec2023.psnc.pl\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"84","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"26","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"31% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}