Modeling Data Integrity Threats for Scientific Workflows Using OSCRP and MITRE ATT&CK®
DescriptionGuaranteeing the data integrity of scientific workflows and their associated data products, in the face of non-malicious and malicious threats, is of paramount importance for the validity and credibility of scientific research. In this work, we describe how we can leverage two popular cybersecurity classification frameworks - OSCRP and MITRE ATT&CK®, to systematically model threats to the integrity of scientific workflows and data in a research setting. We enumerate non- malicious and malicious threats to the integrity of scientific workflows, and present the relevant assets, concerns, avenues of attacks and impact of the threats in typical scientific workflow execution scenarios.
Event Type
Workshop
TimeMonday, 14 November 202210:30am - 10:36am CST
LocationD222
W
Cloud and Distributed Computing
In Situ Processing
Scientific Computing
Workflows
Recorded