VuTAT

Vulnerability Tests of AT Components

VuTAT

In the research project VuTAT existing and established test tools and methods with IT security relevant aspects were analysed and a reverse engineering of the basis robustness test tool “Security Level 1 Tester” provided by the PNO (SL1T) was carried out. The SL1T is a first software solution of the whitepaper “PROFINET IO Net load”, which defines robustness tests only for PROFINET IO devices. Therefore impor­tant constraints for the tests carried out were established and a formal description of test cases in a test specification was dealt with. This formal description of the test cases is the basis for a test library implemen­tation in the VuTAT context used test framework “OpenVAS”.

Furthermore within the research project VuTAT, the concept for an analysis unit was specified. This analysis unit has the function to interpret, validate and document the detected test results. For this work the open source framework “R” was of particular focus. This framework contains an extensive and coordinated library of functionalities to the statistic data analysis. Among other things with the help of “R” it is possible to create simple graphical diagrams such as histograms, timelines as well as quantile-quantile-plots.