JOURNAL ARTICLE

Attack-defense trees based cyber security analysis for CPSs

Abstract

Cyber-physical system (CPS) is the fuse of cyber world and the dynamic physical world and it is being widely used in areas closely related to people's livelihood. Therefore, the security issues of CPS have drawn a global attention and an appropriate risk assessment for CPS is in urgent need. The existing proposals using attack trees for risk assessment mainly focus on depicting the possible intrusions, not for interactions between threats and defenses. In this paper, a risk assessment idea for cyber-physical system with the use of attack-defense tree (ADTree) is proposed, considering the effect of both the attack cost and defense cost. The effectiveness of the proposed approach is evaluated by a set of metrics like probability of success, attack and defense cost and the impact of an attack. In addition, we introduce two economic factors (ROA and ROI) to evaluate the performance of ADTree. Finally, an illustration case of threat risk analysis in SCADA system is given to demonstrate our approach. Overall, our approach provides an effective means of risk assessment and countermeasures evaluation in the evolutional process of security management for cyber-physical system security.

Keywords:
Computer security Cyber-physical system Computer science SCADA Cyber-attack Risk management Livelihood Risk analysis (engineering) Process (computing) Fault tree analysis Vulnerability (computing) Critical infrastructure Engineering Business Reliability engineering

Metrics

33
Cited By
7.97
FWCI (Field Weighted Citation Impact)
12
Refs
0.97
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Information and Cyber Security
Physical Sciences →  Computer Science →  Information Systems
Network Security and Intrusion Detection
Physical Sciences →  Computer Science →  Computer Networks and Communications
Smart Grid Security and Resilience
Physical Sciences →  Engineering →  Control and Systems Engineering

Related Documents

BOOK-CHAPTER

Cyber-Attack Risks Analysis Based on Attack-Defense Trees

Wenjun SunLiqun LvYang SuXu An Wang

Lecture notes on data engineering and communications technologies Year: 2017 Pages: 667-678
BOOK-CHAPTER

ADTool: Security Analysis with Attack–Defense Trees

Barbara KordyPiotr KordySjouke MauwPatrick Schweitzer

Lecture notes in computer science Year: 2013 Pages: 173-176
JOURNAL ARTICLE

Threat Risk Analysis for Cloud Security based on Attack-Defense Trees

Ping WangHui‐Tang LinTzu Chia Wang -Wen-Hui LinPuTsun Kuo -

Journal:   International Journal of Advancements in Computing Technology Year: 2012 Vol: 4 (17)Pages: 607-617
© 2026 ScienceGate Book Chapters — All rights reserved.