English
Related papers

Related papers: Towards Automated Attack Simulations of BPMN-based…

200 papers

Threat modeling has been successfully applied to model technical threats within information systems. However, a lack of methods focusing on non-technical assets and their representation can be observed in theory and practice. Following the…

Cryptography and Security · Computer Science 2024-09-04 Jan von der Assen , Jasmin Hochuli , Thomas Grübl , Burkhard Stiller

Organizations face an ever-changing threat landscape. They must continuously dedicate significant efforts to protect their assets, making their adoption of increased cybersecurity automation inevitable. However, process automation requires…

Computation and Language · Computer Science 2025-07-18 Quentin Goux , Nadira Lammari

Business Process Model and Notation (BPMN) is a widely used standard for modelling business processes. While automated planning has been proposed as a method for simulating and reasoning about BPMN workflows, most implementations remain…

Artificial Intelligence · Computer Science 2025-11-25 Jasper Nie , Christian Muise , Victoria Armstrong

This work-in-progress paper introduces a prototype for a novel Graph Neural Network (GNN) based approach to estimate hidden states in cyber attack simulations. Utilizing the Meta Attack Language (MAL) in conjunction with Relational Dynamic…

Cryptography and Security · Computer Science 2023-12-12 Pontus Johnson , Mathias Ekstedt

While attack graphs are useful for identifying major cybersecurity threats affecting a system, they do not provide operational support for determining the likelihood of having a known vulnerability exploited, or that critical system nodes…

Cryptography and Security · Computer Science 2026-04-21 Francesco Vitale , Simone Guarino , Stefano Perone , Massimiliano Rak , Nicola Mazzocca

The design of business processes involves the usage of modeling languages, tools and methodologies. In this paper we highlight and address a relevant limitation of the Business Process Modeling Notation (BPMN): its weak data representation…

Software Engineering · Computer Science 2009-07-14 Matteo Magnani , Danilo Montesi

The Business Process Modeling Notation (BPMN) is a widely used standard notation for defining intra- and inter-organizational workflows. However, the informal description of the BPMN execution semantics leads to different interpretations of…

Software Engineering · Computer Science 2024-10-09 Tim Kräuter , Adrian Rutle , Harald König , Yngve Lamo

Risk assessment plays a crucial role in ensuring the security and resilience of modern computer systems. Existing methods for conducting risk assessments often suffer from tedious and time-consuming processes, making it challenging to…

Cryptography and Security · Computer Science 2023-07-27 Simon Unger , Ektor Arzoglou , Markus Heinrich , Dirk Scheuermann , Stefan Katzenbeisser

Business Process Model and Notation (BPMN) provides a standard for the design of business processes. It focuses on bridging the gap between the analysis and the technical perspectives, and aims to deliver process automation. The aim of this…

Databases · Computer Science 2015-09-01 Anastasios Gounaris

The explosive growth of cyber attacks nowadays, such as malware, spam, and intrusions, caused severe consequences on society. Securing cyberspace has become an utmost concern for organizations and governments. Traditional Machine Learning…

Cryptography and Security · Computer Science 2024-02-20 Bo Yan , Cheng Yang , Chuan Shi , Yong Fang , Qi Li , Yanfang Ye , Junping Du

A complex business process demands adaptability as it has been highly influenced by the contextual information. The contextual information declares the underlying semantics on which the process logic depends. Thus one of the challenges of a…

Software Engineering · Computer Science 2018-06-06 Debarpita Santra , Sankhayan Choudhury

Attack graphs are one of the main techniques used to automate the risk assessment process. In order to derive a relevant attack graph, up-to-date information on known attack techniques should be represented as interaction rules. Designing…

Cryptography and Security · Computer Science 2020-08-12 Hodaya Binyamini , Ron Bitton , Masaki Inokuchi , Tomohiko Yagyu , Yuval Elovici , Asaf Shabtai

As cyber systems become increasingly complex and cybersecurity threats become more prominent, defenders must prepare, coordinate, automate, document, and share their response methodologies to the extent possible. The CACAO standard was…

Cryptography and Security · Computer Science 2023-09-12 Mateusz Zych , Vasileios Mavroeidis , Konstantinos Fysarakis , Manos Athanatos

Efficient planning, resource management, and consistent operations often rely on converting textual process documents into formal Business Process Model and Notation (BPMN) models. However, this conversion process remains time-intensive and…

This paper considers key challenges to using reinforcement learning (RL) with attack graphs to automate penetration testing in real-world applications from a systems perspective. RL approaches to automated penetration testing are actively…

Cryptography and Security · Computer Science 2022-06-15 Tyler Cody

Assessing network security is a complex and difficult task. Attack graphs have been proposed as a tool to help network administrators understand the potential weaknesses of their network. However, a problem has not yet been addressed by…

Cryptography and Security · Computer Science 2013-06-21 Jorge Lucangeli Obes , Carlos Sarraute , Gerardo Richarte

Machine learning (ML) and artificial intelligence (AI) techniques have now become commonplace in software products and services. When threat modelling a system, it is therefore important that we consider threats unique to ML and AI…

Cryptography and Security · Computer Science 2024-01-17 Vimal Kumar , Juliette Mayo , Khadija Bahiss

An attack graph is a method used to enumerate the possible paths that an attacker can execute in the organization network. MulVAL is a known open-source framework used to automatically generate attack graphs. MulVAL's default modeling has…

Cryptography and Security · Computer Science 2019-06-25 Orly Stan , Ron Bitton , Michal Ezrets , Moran Dadon , Masaki Inokuchi , Yoshinobu Ohta , Yoshiyuki Yamada , Tomohiko Yagyu , Yuval Elovici , Asaf Shabtai

The widely adopted Business Process Model and Notation (BPMN) is a cornerstone of industry standards for business process modeling. However, its ambiguous execution semantics often result in inconsistent interpretations, depending on the…

Software Engineering · Computer Science 2024-06-19 Gerhard Zeisler , Tim Tobias Braunauer , Albert Fleischmann , Robert Singer

The increasing and widespread use of BPMN business processes, also embodying DMN tables, requires tools and methodologies to verify their correctness. However, most commonly used frameworks to build BPMN+DMN models only allow designers to…

Software Engineering · Computer Science 2025-12-18 Giuseppe Della Penna , Igor Melatti
‹ Prev 1 2 3 10 Next ›