A Method for Detecting Common Weaknesses in Self-Sovereign Identity Systems Using Domain-Specific Models and Knowledge Graph

Charnon Pattiyanon, Toshiaki Aoki, Daisuke Ishii

2022

Abstract

A Self-Sovereign Identity (SSI) system is a decentralized identity management system based on claims that leverages blockchain technology to empower individuals to manage their personal information and autonomously authenticate services. The SSI system is unique in that it makes use of disparate terminologies, making analysis arduous and challenging for security specialists. Weakness analysis is a well-known security assurance technique for determining the presence of weaknesses in a target system. Weakness analysis is crucial to the deployment of the SSI system in that it can earn user trust and be verified secure if the majority of detected weaknesses are addressed properly. We seek to leverage domain experience in this work to lessen the effort required to analyze weaknesses by security specialists unfamiliar with the SSI system. This paper presents two domain-specific modeling languages (DSMLs) based on the unified modeling language (UML) communication diagram for embedding domain knowledge about the SSI system and common weaknesses. Then, with the assistance of domain knowledge graphs, this paper presents a method for detecting weaknesses in the links between the two models created by the proposed DSMLs. Precision and accuracy metrics are used to determine the proposed method’s performance.

Download


Paper Citation


in Harvard Style

Pattiyanon C., Aoki T. and Ishii D. (2022). A Method for Detecting Common Weaknesses in Self-Sovereign Identity Systems Using Domain-Specific Models and Knowledge Graph. In Proceedings of the 10th International Conference on Model-Driven Engineering and Software Development - Volume 1: MODELSWARD, ISBN 978-989-758-550-0, pages 219-226. DOI: 10.5220/0010824900003119


in Bibtex Style

@conference{modelsward22,
author={Charnon Pattiyanon and Toshiaki Aoki and Daisuke Ishii},
title={A Method for Detecting Common Weaknesses in Self-Sovereign Identity Systems Using Domain-Specific Models and Knowledge Graph},
booktitle={Proceedings of the 10th International Conference on Model-Driven Engineering and Software Development - Volume 1: MODELSWARD,},
year={2022},
pages={219-226},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010824900003119},
isbn={978-989-758-550-0},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 10th International Conference on Model-Driven Engineering and Software Development - Volume 1: MODELSWARD,
TI - A Method for Detecting Common Weaknesses in Self-Sovereign Identity Systems Using Domain-Specific Models and Knowledge Graph
SN - 978-989-758-550-0
AU - Pattiyanon C.
AU - Aoki T.
AU - Ishii D.
PY - 2022
SP - 219
EP - 226
DO - 10.5220/0010824900003119