Institute for Software Research
School of Computer Science, Carnegie Mellon University
STRIDE-based Security Model in Acme
Marwan Abi-Antoun*, Jeffrey M. Barnes**
The previous security model and checker were implemented using custom code. We now formalize the same model using ADL support for architectural types and properties, and define the checks as logic predicates. Using an ADL gives the benefit of having a declarative model, with less room for error compared to custom code. Moreover, with such a model, power users can more easily add properties and predicates to extend or customize the security analysis.
*Department of Computer Science, Wayne State University