{"id":"https://openalex.org/W4394781059","doi":"https://doi.org/10.1145/3776549","title":"Security Modelling for Cyber-Physical Systems: A Systematic Literature Review","display_name":"Security Modelling for Cyber-Physical Systems: A Systematic Literature Review","publication_year":2025,"publication_date":"2025-11-11","ids":{"openalex":"https://openalex.org/W4394781059","doi":"https://doi.org/10.1145/3776549"},"language":"en","primary_location":{"id":"doi:10.1145/3776549","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3776549","pdf_url":null,"source":{"id":"https://openalex.org/S2506189754","display_name":"ACM Transactions on Cyber-Physical Systems","issn_l":"2378-962X","issn":["2378-962X","2378-9638"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Cyber-Physical Systems","raw_type":"journal-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2404.07527","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5102715051","display_name":"S.-T. Huang","orcid":"https://orcid.org/0009-0002-3954-1843"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Shaofei Huang","raw_affiliation_strings":["Singapore Management University, Singapore, Singapore"],"raw_orcid":"https://orcid.org/0009-0002-3954-1843","affiliations":[{"raw_affiliation_string":"Singapore Management University, Singapore, Singapore","institution_ids":["https://openalex.org/I79891267"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053470148","display_name":"Christopher M. Poskitt","orcid":"https://orcid.org/0000-0002-9376-2471"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Christopher M. Poskitt","raw_affiliation_strings":["Singapore Management University, Singapore, Singapore"],"raw_orcid":"https://orcid.org/0000-0002-9376-2471","affiliations":[{"raw_affiliation_string":"Singapore Management University, Singapore, Singapore","institution_ids":["https://openalex.org/I79891267"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5029828965","display_name":"Lwin Khin Shar","orcid":"https://orcid.org/0000-0001-5130-0407"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Lwin Khin Shar","raw_affiliation_strings":["Singapore Management University, Singapore, Singapore"],"raw_orcid":"https://orcid.org/0000-0001-5130-0407","affiliations":[{"raw_affiliation_string":"Singapore Management University, Singapore, Singapore","institution_ids":["https://openalex.org/I79891267"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5102715051"],"corresponding_institution_ids":["https://openalex.org/I79891267"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.00058017,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"10","issue":"2","first_page":"1","last_page":"29"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.993399977684021,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11195","display_name":"Simulation Techniques and Applications","score":0.991100013256073,"subfield":{"id":"https://openalex.org/subfields/1803","display_name":"Management Science and Operations Research"},"field":{"id":"https://openalex.org/fields/18","display_name":"Decision Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/cyber-physical-system","display_name":"Cyber-physical system","score":0.7223477959632874},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.7063520550727844},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.654388427734375},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.6182840466499329},{"id":"https://openalex.org/keywords/resilience","display_name":"Resilience (materials science)","score":0.5238780379295349},{"id":"https://openalex.org/keywords/vulnerability-assessment","display_name":"Vulnerability assessment","score":0.41954901814460754},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.3230035901069641},{"id":"https://openalex.org/keywords/psychological-resilience","display_name":"Psychological resilience","score":0.17793986201286316},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.11441400647163391}],"concepts":[{"id":"https://openalex.org/C179768478","wikidata":"https://www.wikidata.org/wiki/Q1120057","display_name":"Cyber-physical system","level":2,"score":0.7223477959632874},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.7063520550727844},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.654388427734375},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.6182840466499329},{"id":"https://openalex.org/C2779585090","wikidata":"https://www.wikidata.org/wiki/Q3457762","display_name":"Resilience (materials science)","level":2,"score":0.5238780379295349},{"id":"https://openalex.org/C167063184","wikidata":"https://www.wikidata.org/wiki/Q1400839","display_name":"Vulnerability assessment","level":3,"score":0.41954901814460754},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.3230035901069641},{"id":"https://openalex.org/C137176749","wikidata":"https://www.wikidata.org/wiki/Q4105337","display_name":"Psychological resilience","level":2,"score":0.17793986201286316},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.11441400647163391},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C542102704","wikidata":"https://www.wikidata.org/wiki/Q183257","display_name":"Psychotherapist","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":5,"locations":[{"id":"doi:10.1145/3776549","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3776549","pdf_url":null,"source":{"id":"https://openalex.org/S2506189754","display_name":"ACM Transactions on Cyber-Physical Systems","issn_l":"2378-962X","issn":["2378-962X","2378-9638"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Cyber-Physical Systems","raw_type":"journal-article"},{"id":"pmh:oai:arXiv.org:2404.07527","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2404.07527","pdf_url":"https://arxiv.org/pdf/2404.07527","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":null},{"id":"pmh:oai:arXiv.org:2404.07527","is_oa":true,"landing_page_url":"https://arxiv.org/abs/2404.07527","pdf_url":"https://arxiv.org/pdf/2404.07527","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"pmh:oai:ink.library.smu.edu.sg:sis_research-11959","is_oa":false,"landing_page_url":"https://ink.library.smu.edu.sg/sis_research/10957","pdf_url":null,"source":{"id":"https://openalex.org/S4306401925","display_name":"Singapore Management University Institutional Knowledge (InK) (Singapore Management University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79891267","host_organization_name":"Singapore Management University","host_organization_lineage":["https://openalex.org/I79891267"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"https://doi.org/10.1145/3776549","raw_type":"Journal Article"},{"id":"doi:10.48550/arxiv.2404.07527","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2404.07527","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2404.07527","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2404.07527","pdf_url":"https://arxiv.org/pdf/2404.07527","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":null},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","display_name":"Industry, innovation and infrastructure","score":0.6299999952316284}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":66,"referenced_works":["https://openalex.org/W4385076038","https://openalex.org/W4389762899","https://openalex.org/W3137330245","https://openalex.org/W3134614432","https://openalex.org/W2536179434","https://openalex.org/W2749414669","https://openalex.org/W2790681581","https://openalex.org/W4402597802","https://openalex.org/W4400730986","https://openalex.org/W1993619428","https://openalex.org/W2143665444","https://openalex.org/W3196498627","https://openalex.org/W2774581802","https://openalex.org/W2113043487","https://openalex.org/W4398174353","https://openalex.org/W4407937585","https://openalex.org/W2081418638","https://openalex.org/W4391791289","https://openalex.org/W2528863100","https://openalex.org/W4391914737","https://openalex.org/W2690638300","https://openalex.org/W2726116480","https://openalex.org/W3049107452","https://openalex.org/W4400314649","https://openalex.org/W3184939455","https://openalex.org/W2579603034","https://openalex.org/W4400976790","https://openalex.org/W4210336026","https://openalex.org/W3015966526","https://openalex.org/W4304689535","https://openalex.org/W4387824443","https://openalex.org/W2694044524","https://openalex.org/W4308476675","https://openalex.org/W1992208352","https://openalex.org/W4224914413","https://openalex.org/W4324007188","https://openalex.org/W4200514777","https://openalex.org/W1648834017","https://openalex.org/W4394893863","https://openalex.org/W4391878213","https://openalex.org/W3158020972","https://openalex.org/W1996109622","https://openalex.org/W4303647513","https://openalex.org/W4385562826","https://openalex.org/W3156877534","https://openalex.org/W4392772292","https://openalex.org/W2607077291","https://openalex.org/W934626039","https://openalex.org/W4401879602","https://openalex.org/W4399783570","https://openalex.org/W3087030391","https://openalex.org/W2894859296","https://openalex.org/W4405182570","https://openalex.org/W3123076006","https://openalex.org/W1996655273","https://openalex.org/W4312692515","https://openalex.org/W2804851328","https://openalex.org/W2921968294","https://openalex.org/W4385412329","https://openalex.org/W4362603371","https://openalex.org/W2051834076","https://openalex.org/W4214543602","https://openalex.org/W4313256807","https://openalex.org/W4392289352","https://openalex.org/W2012446724","https://openalex.org/W3131988611"],"related_works":["https://openalex.org/W1883246888","https://openalex.org/W2370114625","https://openalex.org/W1756374135","https://openalex.org/W2947584067","https://openalex.org/W3118510577","https://openalex.org/W2280562859","https://openalex.org/W230721595","https://openalex.org/W3157230915","https://openalex.org/W1496728123","https://openalex.org/W2062873522"],"abstract_inverted_index":{"Cyber-physical":[0],"systems":[1,28,37,52],"are":[2,99,104],"at":[3],"the":[4,33,39,111,178,213],"intersection":[5],"of":[6,16,35,42,180,220],"digital":[7],"technology":[8],"and":[9,18,38,60,64,69,76,93,115,139,153,167,174,217],"engineering":[10],"domains,":[11],"rendering":[12],"them":[13],"high-value":[14],"targets":[15],"sophisticated":[17],"well-funded":[19],"cybersecurity":[20,24,172],"threat":[21,92,114,147],"actors.":[22],"Prominent":[23],"attacks":[25],"on":[26,46,84,110,146],"cyber-physical":[27,51,88,122,181,222],"have":[29],"brought":[30],"attention":[31],"to":[32,57,70,159,189],"vulnerability":[34],"these":[36,97],"inherent":[40],"weaknesses":[41],"critical":[43],"infrastructure":[44],"reliant":[45],"them.":[47],"Security":[48],"modelling":[49,86,148,151,163],"for":[50,87,121],"is":[53],"an":[54],"important":[55],"mechanism":[56],"systematically":[58],"identify":[59],"assess":[61],"vulnerabilities,":[62],"threats":[63,173],"risks":[65],"throughout":[66,177],"system":[67,73,123],"lifecycles,":[68],"ultimately":[71],"ensure":[72],"resilience,":[74],"safety":[75],"reliability.":[77],"This":[78,107,193],"survey":[79],"delves":[80],"into":[81,141],"state-of-the-art":[82],"research":[83],"security":[85,162,203],"systems,":[89,182],"encompassing":[90],"both":[91],"attack":[94,116,150],"modelling.":[95],"While":[96],"terms":[98],"sometimes":[100],"used":[101],"interchangeably,":[102],"they":[103,169],"different":[105],"concepts.":[106],"article":[108,194],"elaborates":[109],"differences":[112],"between":[113],"modelling,":[117],"examining":[118],"their":[119],"implications":[120],"security.":[124],"We":[125],"conducted":[126],"a":[127],"systematic":[128],"search":[129],"that":[130,208],"yielded":[131],"449":[132],"papers,":[133],"from":[134],"which":[135,183],"32":[136],"were":[137],"selected":[138],"categorised":[140],"3":[142],"clusters:":[143],"those":[144],"focused":[145],"methods,":[149],"methods":[152,164],"literature":[154],"reviews.":[155],"Specifically,":[156],"we":[157],"sought":[158],"examine":[160],"what":[161],"exist":[165],"today,":[166],"how":[168],"address":[170],"real-world":[171,221],"attacker":[175],"capabilities":[176],"lifecycle":[179],"typically":[184],"span":[185],"longer":[186],"durations":[187],"compared":[188],"traditional":[190],"IT":[191],"systems.":[192],"also":[195],"highlights":[196],"several":[197],"limitations":[198],"in":[199],"existing":[200],"research,":[201],"wherein":[202],"models":[204],"adopt":[205],"simplistic":[206],"approaches":[207],"do":[209],"not":[210],"adequately":[211],"consider":[212],"dynamic,":[214],"multi-layer,":[215],"multi-path":[216],"multi-agent":[218],"characteristics":[219],"attacks.":[223]},"counts_by_year":[],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2024-04-13T00:00:00"}
