ICS is defined as a subset of CPSs, required realtime responsiveness, availability, reliability, and distributed intelligence to function effectively. However, complexity and openness of CPSs infrastructure expose them to significant cybersecurity challenges, making security a critical concern in safeguarding operations. Threat modeling, used to identify potential threats to a system, remains largely a manual process that requires skilled personnel and is often prone to human error. These challenges are expanded by increasing complexity of CPSs infrastructure and the evolving nature of cyber threats. Developing automated solutions is essential to manage information, respond promptly to threats and changes, and minimize human errors. This paper presents an automated ontology-based threat modeling approach tailored for CPSs, addressing the need for threat assessment by leveraging an ontology-driven framework to map threats to CPSs components using structured vocabulary. The proposed solution provides a scalable and automated method to improve the security and resilience of CPSs.

Ontology-driven threat modeling analysis of CPSs

Kordi Marzieh
;
Maunero Nicolo'
2025

Abstract

ICS is defined as a subset of CPSs, required realtime responsiveness, availability, reliability, and distributed intelligence to function effectively. However, complexity and openness of CPSs infrastructure expose them to significant cybersecurity challenges, making security a critical concern in safeguarding operations. Threat modeling, used to identify potential threats to a system, remains largely a manual process that requires skilled personnel and is often prone to human error. These challenges are expanded by increasing complexity of CPSs infrastructure and the evolving nature of cyber threats. Developing automated solutions is essential to manage information, respond promptly to threats and changes, and minimize human errors. This paper presents an automated ontology-based threat modeling approach tailored for CPSs, addressing the need for threat assessment by leveraging an ontology-driven framework to map threats to CPSs components using structured vocabulary. The proposed solution provides a scalable and automated method to improve the security and resilience of CPSs.
2025
979-8-3315-3591-9
CPSs Security, ICS Security, Cyber Threat, Cyber security, Ontology, Threat Modeling
File in questo prodotto:
File Dimensione Formato  
IEEE_CSR_2025_Ontology_driven_Threat_Modeling_Analysis_of_CPS_2025140216.pdf

accesso aperto

Descrizione: This is the Author Accepted Manuscript (postprint) version of the following paper: Kordi M., Maunero N.: "Ontology-driven Threat Modeling Analysis of CPSs", 2025, peer-reviewed and accepted for publication in 2025 IEEE International Conference on Cyber Security and Resilience (CSR), 10.1109/CSR64739.2025.11129998.
Tipologia: Documento in Post-print
Licenza: Creative commons
Dimensione 1.15 MB
Formato Adobe PDF
1.15 MB Adobe PDF Visualizza/Apri
Ontology-driven_Threat_Modeling_Analysis_of_CPSs.pdf

non disponibili

Descrizione: Ontology-driven Threat Modeling Analysis of CPSs
Tipologia: Versione Editoriale (PDF)
Licenza: Copyright dell'editore
Dimensione 1.2 MB
Formato Adobe PDF
1.2 MB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.11771/36458
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
social impact