A Meta Language for Threat Modeling and Attack Simulations
Pontus Johnson, Robert Lagerström, Mathias Ekstedt · 2018
Attack simulations may be used to assess the cyber security of systems. In such simulations, the steps taken by an attacker in order to compromise sensitive system assets are traced, and a time estimate may be computed from the initial step to the compromise of assets of interest. Attack graphs constitute a suitable formalism for the modeling of attack steps and their dependencies, allowing the subsequent simulation.