-
公开(公告)号:US11954208B1
公开(公告)日:2024-04-09
申请号:US17103131
申请日:2020-11-24
Inventor: Sheldon L. Grass , Alfreda M. DeLong , Jonathan P Ingraham , Noel A. Zenga
IPC: G06F21/57 , G06F9/4401 , G06Q10/0635 , G06Q10/0637 , G06Q10/0639 , G06Q10/067 , G06Q10/0875 , G06Q10/101
CPC classification number: G06F21/577 , G06F9/4401 , G06Q10/0635 , G06Q10/06375 , G06Q10/06393 , G06Q10/06395 , G06Q10/067 , G06Q10/0875 , G06Q10/101 , G06F2221/034 , G06Q2220/00
Abstract: A method for a system for security evaluation includes working one state at a time; identifying primitives of interest and systematically applying relevant attacks for the system; starting at chip level, working through states, and then expanding a system boundary and repeating; following a sequence of: chip>circuit card>subsystem>system>platform for a product solution under analysis; determining if a system definition has sufficient detail, or is too abstract; for a chip with a native secure boot protocol, determining if all players are represented; representing attacks as vectors made up of measurements of the following attributes: Dollars, days, Probability of success, Probability of destruction, technology node, and number of samples; and representing countermeasures as vectors made up of scaling factors for each of attack attributes.