ICS is defined as a subset of CPSs, required realtime responsiveness, availability, reliability, and distributed intelligence to function effectively. However, complexity and openness of CPSs infrastructure expose them to significant cybersecurity challenges, making security a critical concern in safeguarding operations. Threat modeling, used to identify potential threats to a system, remains largely a manual process that requires skilled personnel and is often prone to human error. These challenges are expanded by increasing complexity of CPSs infrastructure and the evolving nature of cyber threats. Developing automated solutions is essential to manage information, respond promptly to threats and changes, and minimize human errors. This paper presents an automated ontology-based threat modeling approach tailored for CPSs, addressing the need for threat assessment by leveraging an ontology-driven framework to map threats to CPSs components using structured vocabulary. The proposed solution provides a scalable and automated method to improve the security and resilience of CPSs.
Ontology-driven threat modeling analysis of CPSs
	
	
	
		
		
		
		
		
	
	
	
	
	
	
	
	
		
		
		
		
		
			
			
			
		
		
		
		
			
			
				
				
					
					
					
					
						
							
						
						
					
				
				
				
				
				
				
				
				
				
				
				
			
			
		
			
			
				
				
					
					
					
					
						
							
						
						
					
				
				
				
				
				
				
				
				
				
				
				
			
			
		
		
		
		
	
Kordi Marzieh
;Maunero Nicolo'
			2025
Abstract
ICS is defined as a subset of CPSs, required realtime responsiveness, availability, reliability, and distributed intelligence to function effectively. However, complexity and openness of CPSs infrastructure expose them to significant cybersecurity challenges, making security a critical concern in safeguarding operations. Threat modeling, used to identify potential threats to a system, remains largely a manual process that requires skilled personnel and is often prone to human error. These challenges are expanded by increasing complexity of CPSs infrastructure and the evolving nature of cyber threats. Developing automated solutions is essential to manage information, respond promptly to threats and changes, and minimize human errors. This paper presents an automated ontology-based threat modeling approach tailored for CPSs, addressing the need for threat assessment by leveraging an ontology-driven framework to map threats to CPSs components using structured vocabulary. The proposed solution provides a scalable and automated method to improve the security and resilience of CPSs.| File | Dimensione | Formato | |
|---|---|---|---|
| IEEE_CSR_2025_Ontology_driven_Threat_Modeling_Analysis_of_CPS_2025140216.pdf accesso aperto 
											Descrizione: This is the Author Accepted Manuscript (postprint) version of the following paper: Kordi M., Maunero N.: "Ontology-driven Threat Modeling Analysis of CPSs", 2025, peer-reviewed and accepted for publication in 2025 IEEE International Conference on Cyber Security and Resilience (CSR), 10.1109/CSR64739.2025.11129998.
										 
											Tipologia:
											Documento in Post-print
										 
											Licenza:
											
											
												Creative commons
												
												
													
													
													
												
												
											
										 
										Dimensione
										1.15 MB
									 
										Formato
										Adobe PDF
									 | 1.15 MB | Adobe PDF | Visualizza/Apri | 
| Ontology-driven_Threat_Modeling_Analysis_of_CPSs.pdf non disponibili 
											Descrizione: Ontology-driven Threat Modeling Analysis of CPSs
										 
											Tipologia:
											Versione Editoriale (PDF)
										 
											Licenza:
											
											
												Copyright dell'editore
												
												
												
											
										 
										Dimensione
										1.2 MB
									 
										Formato
										Adobe PDF
									 | 1.2 MB | Adobe PDF | Visualizza/Apri Richiedi una copia | 
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

