Skip to content

Version 0.7.0

Choose a tag to compare

@andrewbwm andrewbwm released this 13 Sep 14:09
· 55 commits to master since this release

This new version of coreLang comes with the following changes:

  • Refactor the codebase into five separate files, one for each category of assets
  • Rework Data Access, Read, Write, and Delete attack steps to follow the same pattern as the rest of the language and only propagate via themselves and one level at time when Data contain other Data.
  • Introduce Dependence association between Data and Applications to represent circumstances where modifying a particular set of Data can give the attacker control over the Application(FullAccess) and denying them would prevent the Application from performing its tasks(Deny).
  • Have Users spread malware to other Hardware systems that they have access to in order to depict worm malware replication. This change also introduced the NoRemovableMediaUsage defence on the User which is enabled by default to not confuse the modeller if they are are not interested in these aspects.
  • Split network connectivity into two separate components Inspected and Uninspected traffic. The inspection is payload inspection specifically.
    • Uninspected communications do not impose any limitations on the attacker's activities.
    • Inspected communications carry some limitations. Such as, preventing the attacker from exploiting SoftwareVulnerabilities, and limiting ReverseReach(which in turn is needed to maximise the impact of UnsafeUserActivity and prevent Extract on Data).
  • Have Data encryption via Credentials bypass PayloadInspection on ConnectionRules that we know can be used to transfer the Data.
  • Minor fixes, improvements, date updates, and typo corrections.