{"id":"https://openalex.org/W2113589671","doi":"https://doi.org/10.1145/2808783.2808787","title":"Modelling Social-Technical Attacks with Timed Automata","display_name":"Modelling Social-Technical Attacks with Timed Automata","publication_year":2015,"publication_date":"2015-10-06","ids":{"openalex":"https://openalex.org/W2113589671","doi":"https://doi.org/10.1145/2808783.2808787","mag":"2113589671"},"language":"en","primary_location":{"id":"doi:10.1145/2808783.2808787","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2808783.2808787","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5075928837","display_name":"Nicolas David","orcid":null},"institutions":[{"id":"https://openalex.org/I97188460","display_name":"Nantes Universit\u00e9","ror":"https://ror.org/03gnr7b55","country_code":"FR","type":"education","lineage":["https://openalex.org/I97188460"]}],"countries":["FR"],"is_corresponding":true,"raw_author_name":"Nicolas David","raw_affiliation_strings":["University of Nantes/LINA, Nantes, France","University of Nantes/LINA, Nantes, France#TAB#"],"affiliations":[{"raw_affiliation_string":"University of Nantes/LINA, Nantes, France","institution_ids":["https://openalex.org/I97188460"]},{"raw_affiliation_string":"University of Nantes/LINA, Nantes, France#TAB#","institution_ids":["https://openalex.org/I97188460"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112710864","display_name":"Alexandre David","orcid":null},"institutions":[{"id":"https://openalex.org/I891191580","display_name":"Aalborg University","ror":"https://ror.org/04m5j1k67","country_code":"DK","type":"education","lineage":["https://openalex.org/I891191580"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Alexandre David","raw_affiliation_strings":["Aalborg University, Aalborg, Denmark"],"affiliations":[{"raw_affiliation_string":"Aalborg University, Aalborg, Denmark","institution_ids":["https://openalex.org/I891191580"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051122243","display_name":"Ren\u00e9 Rydhof Hansen","orcid":"https://orcid.org/0000-0002-5688-6432"},"institutions":[{"id":"https://openalex.org/I891191580","display_name":"Aalborg University","ror":"https://ror.org/04m5j1k67","country_code":"DK","type":"education","lineage":["https://openalex.org/I891191580"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Rene Rydhof Hansen","raw_affiliation_strings":["Aalborg University, Aalborg, Denmark"],"affiliations":[{"raw_affiliation_string":"Aalborg University, Aalborg, Denmark","institution_ids":["https://openalex.org/I891191580"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069362159","display_name":"Kim G. Larsen","orcid":"https://orcid.org/0000-0002-5953-3384"},"institutions":[{"id":"https://openalex.org/I891191580","display_name":"Aalborg University","ror":"https://ror.org/04m5j1k67","country_code":"DK","type":"education","lineage":["https://openalex.org/I891191580"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Kim G. Larsen","raw_affiliation_strings":["Aalborg University, Aalborg, Denmark"],"affiliations":[{"raw_affiliation_string":"Aalborg University, Aalborg, Denmark","institution_ids":["https://openalex.org/I891191580"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5030129842","display_name":"Axel Legay","orcid":"https://orcid.org/0000-0003-2287-8925"},"institutions":[{"id":"https://openalex.org/I1326498283","display_name":"Institut national de recherche en informatique et en automatique","ror":"https://ror.org/02kvxyf05","country_code":"FR","type":"funder","lineage":["https://openalex.org/I1326498283"]},{"id":"https://openalex.org/I4210133778","display_name":"Inria Rennes - Bretagne Atlantique Research Centre","ror":"https://ror.org/04040yw90","country_code":"FR","type":"government","lineage":["https://openalex.org/I1326498283","https://openalex.org/I4210133778"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Axel Legay","raw_affiliation_strings":["INRIA, Rennes, France","Inria-Rennes, France#TAB#"],"affiliations":[{"raw_affiliation_string":"INRIA, Rennes, France","institution_ids":["https://openalex.org/I4210133778","https://openalex.org/I1326498283"]},{"raw_affiliation_string":"Inria-Rennes, France#TAB#","institution_ids":["https://openalex.org/I1326498283"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5043073096","display_name":"Mads Chr. Olesen","orcid":"https://orcid.org/0000-0002-3733-0500"},"institutions":[{"id":"https://openalex.org/I891191580","display_name":"Aalborg University","ror":"https://ror.org/04m5j1k67","country_code":"DK","type":"education","lineage":["https://openalex.org/I891191580"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Mads Chr. Olesen","raw_affiliation_strings":["Aalborg University, Aalborg, Denmark"],"affiliations":[{"raw_affiliation_string":"Aalborg University, Aalborg, Denmark","institution_ids":["https://openalex.org/I891191580"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5060462301","display_name":"Christian W. Probst","orcid":"https://orcid.org/0000-0001-5089-9155"},"institutions":[{"id":"https://openalex.org/I96673099","display_name":"Technical University of Denmark","ror":"https://ror.org/04qtj9h94","country_code":"DK","type":"education","lineage":["https://openalex.org/I96673099"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Christian W. Probst","raw_affiliation_strings":["Technical University of Denmark, Kongens Lyngby, Denmark"],"affiliations":[{"raw_affiliation_string":"Technical University of Denmark, Kongens Lyngby, Denmark","institution_ids":["https://openalex.org/I96673099"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5075928837"],"corresponding_institution_ids":["https://openalex.org/I97188460"],"apc_list":null,"apc_paid":null,"fwci":6.6333,"has_fulltext":false,"cited_by_count":20,"citation_normalized_percentile":{"value":0.96530508,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"21","last_page":"28"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10142","display_name":"Formal Methods in Verification","score":0.9955999851226807,"subfield":{"id":"https://openalex.org/subfields/1703","display_name":"Computational Theory and Mathematics"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8284069299697876},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.8264237642288208},{"id":"https://openalex.org/keywords/automaton","display_name":"Automaton","score":0.7908779978752136},{"id":"https://openalex.org/keywords/cover","display_name":"Cover (algebra)","score":0.6609551906585693},{"id":"https://openalex.org/keywords/cellular-automaton","display_name":"Cellular automaton","score":0.5550158023834229},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5429998636245728},{"id":"https://openalex.org/keywords/insider-threat","display_name":"Insider threat","score":0.4911908805370331},{"id":"https://openalex.org/keywords/insider","display_name":"Insider","score":0.4906517565250397},{"id":"https://openalex.org/keywords/model-checking","display_name":"Model checking","score":0.4853143095970154},{"id":"https://openalex.org/keywords/complex-system","display_name":"Complex system","score":0.42949387431144714},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.37684908509254456},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.18687781691551208},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.07462328672409058}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8284069299697876},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.8264237642288208},{"id":"https://openalex.org/C112505250","wikidata":"https://www.wikidata.org/wiki/Q787116","display_name":"Automaton","level":2,"score":0.7908779978752136},{"id":"https://openalex.org/C2780428219","wikidata":"https://www.wikidata.org/wiki/Q16952335","display_name":"Cover (algebra)","level":2,"score":0.6609551906585693},{"id":"https://openalex.org/C35527583","wikidata":"https://www.wikidata.org/wiki/Q189156","display_name":"Cellular automaton","level":2,"score":0.5550158023834229},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5429998636245728},{"id":"https://openalex.org/C2776633304","wikidata":"https://www.wikidata.org/wiki/Q6038026","display_name":"Insider threat","level":3,"score":0.4911908805370331},{"id":"https://openalex.org/C2778971194","wikidata":"https://www.wikidata.org/wiki/Q1664551","display_name":"Insider","level":2,"score":0.4906517565250397},{"id":"https://openalex.org/C110251889","wikidata":"https://www.wikidata.org/wiki/Q1569697","display_name":"Model checking","level":2,"score":0.4853143095970154},{"id":"https://openalex.org/C47822265","wikidata":"https://www.wikidata.org/wiki/Q854457","display_name":"Complex system","level":2,"score":0.42949387431144714},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.37684908509254456},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.18687781691551208},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.07462328672409058},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/2808783.2808787","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2808783.2808787","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats","raw_type":"proceedings-article"},{"id":"pmh:oai:pure.atira.dk:publications/056c1bc0-f89a-434b-85b0-4783516633e9","is_oa":false,"landing_page_url":"https://vbn.aau.dk/da/publications/056c1bc0-f89a-434b-85b0-4783516633e9","pdf_url":null,"source":{"id":"https://openalex.org/S4306401731","display_name":"VBN Forskningsportal (Aalborg Universitet)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I891191580","host_organization_name":"Aalborg University","host_organization_lineage":["https://openalex.org/I891191580"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"David, N, David, A, Hansen, R R, Larsen, K G, Legay, A, Olesen, M C & Probst, C 2015, Modelling Socio-Technical Attacks with Timed Automata. in Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats. Association for Computing Machinery (ACM), pp. 21-28, 7th ACM CCS International Workshop on Managing Insider Security Threats, Denver, United States, 12/10/2015. https://doi.org/10.1145/2808783.2808787","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:ris.utwente.nl:openaire_cris_publications/70442808-a2f7-4e1c-b127-04c2a68bfa1c","is_oa":false,"landing_page_url":"https://research.utwente.nl/en/publications/70442808-a2f7-4e1c-b127-04c2a68bfa1c","pdf_url":null,"source":{"id":"https://openalex.org/S4406922991","display_name":"University of Twente Research Information","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"David, N, David, A, Hansen, R R, Larsen, K G, Legay, A, Olesen, M C & Probst, C W 2015, Modelling Social-Technical Attacks with Timed Automata. in MIST '15 : Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats. Association for Computing Machinery, New York, NY, pp. 21-28, 7th ACM CCS International Workshop on Managing Insider Security Threats, MIST 2015, Denver, Colorado, United States, 16/10/15. https://doi.org/10.1145/2808783.2808787","raw_type":"info:eu-repo/semantics/publishedVersion"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.7099999785423279,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":13,"referenced_works":["https://openalex.org/W1546690352","https://openalex.org/W1582237078","https://openalex.org/W1878401237","https://openalex.org/W1962072139","https://openalex.org/W2059451986","https://openalex.org/W2064241518","https://openalex.org/W2098320696","https://openalex.org/W2098928026","https://openalex.org/W2103848824","https://openalex.org/W2146024157","https://openalex.org/W2156607688","https://openalex.org/W2165532165","https://openalex.org/W3118517595"],"related_works":["https://openalex.org/W2766781562","https://openalex.org/W4205304595","https://openalex.org/W2792608345","https://openalex.org/W2979782961","https://openalex.org/W308359497","https://openalex.org/W1499596878","https://openalex.org/W3136170567","https://openalex.org/W2947769183","https://openalex.org/W4387194049","https://openalex.org/W2018332730"],"abstract_inverted_index":{"Attacks":[0,16],"on":[1,38],"a":[2,35,68],"system":[3],"often":[4],"exploit":[5],"vulnerabilities":[6],"that":[7],"arise":[8],"from":[9,25],"human":[10,14],"behaviour":[11],"or":[12],"other":[13],"activity.":[15],"of":[17,94,117],"this":[18,43],"type,":[19],"so-called":[20],"socio-technical":[21,51,56],"attacks,":[22,30],"cover":[23],"everything":[24],"social":[26],"engineering":[27],"to":[28,73],"insider":[29],"and":[31,55,63,77,89,92,97,107,124,130],"they":[32],"can":[33,81,126],"have":[34],"devastating":[36],"impact":[37],"an":[39,47],"unprepared":[40],"organisation.":[41],"In":[42],"paper":[44],"we":[45,80],"develop":[46],"approach":[48],"towards":[49],"modelling":[50,116],"systems":[52],"in":[53,58,86,119],"general":[54],"attacks":[57,85],"particular,":[59],"using":[60],"timed":[61,110],"automata":[62,78,111],"illustrate":[64],"its":[65],"application":[66],"by":[67],"complex":[69],"case":[70],"study.":[71],"Thanks":[72],"automated":[74],"model":[75,88,96],"checking":[76],"theory,":[79],"automatically":[82],"generate":[83],"possible":[84],"our":[87],"perform":[90],"analysis":[91],"simulation":[93],"both":[95],"attack,":[98],"revealing":[99],"details":[100],"about":[101],"the":[102],"specific":[103],"interaction":[104],"between":[105],"attacker":[106],"victim.":[108],"Using":[109],"also":[112],"allows":[113],"for":[114],"intuitive":[115],"systems,":[118],"which":[120],"quantities":[121],"like":[122],"time":[123],"cost":[125],"be":[127],"easily":[128],"added":[129],"analysed.":[131]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":1},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":1},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":3},{"year":2017,"cited_by_count":4},{"year":2016,"cited_by_count":1}],"updated_date":"2026-03-13T16:22:10.518609","created_date":"2016-06-24T00:00:00"}
