Modelling Tool Extension for Vulnerability Management
Managing vulnerabilities with respect to the design of systems is essential to securing systems and establishing their trustworthiness. Until now, there has been no modelling tool to support vulnerability management within the context of system design. We present a new, open-source extension of a systems security design and assessment tool. First and foremost, this extension integrates pertinent vulnerability management domain ontology into the tool’s underlying metamodel. Based on the extended metamodel, the enriched tool supports importing information from vulnerability-related knowledge bases as well as capturing new vulnerability information and security rules. This information can then be used in an integrative and scalable form to analyse and reason about the security of systems designs. The extended tool now includes an automated reasoning mechanism for establishing the vulnerability posture of systems designs.
Fri 27 SepDisplayed time zone: Amsterdam, Berlin, Bern, Rome, Stockholm, Vienna change
10:45 - 12:30 | Modeling Languages and ToolsTools and Demonstrations at HS 7 Chair(s): Steffen Zschaler King's College London | ||
10:45 18mTalk | Modelling Tool Extension for Vulnerability Management Tools and Demonstrations Avi Shaked University of Oxford, UK, Nan Messe IRIT - University of Toulouse, Tom Melham University of Oxford | ||
11:11 18mTalk | SCCD Debugger: a Debugger for Statecharts and Class Diagrams Tools and Demonstrations Francisco Simões NOVA LINCS, Departamento de Informática, Faculdade de Ciências e Tecnologia, Universidade Nova de Lisboa, Miguel Goulao NOVA-LINCS, FCT/UNL, Vasco Amaral NOVA LINCS & Nova School of Sciences and Tecnhology, Joeri Exelmans University of Antwerp, Hans Vangheluwe University of Antwerp and Flanders Make | ||
11:37 18mTalk | M2AR: A Web-based Modeling Environment for the Augmented Reality Workflow Modeling Language Tools and Demonstrations DOI | ||
12:03 18mTalk | Cross-IDE remote debugging of model management programs through the Debug Adapter Protocol Tools and Demonstrations |