OSAFIS

Research library

The thirteen documents of OSAFIS 2.0.0-draft.1, a research proposal for describing and assessing security failures in intelligent systems.

  1. 01OSAFIS Research Vision

    OSAFIS proposes a common representation for analysing security failures in intelligent systems. Its purpose is to connect the security contract that failed to…

    7 min read

  2. 02Foundational Concepts

    OSAFIS proposes a vocabulary for describing security failures in intelligent systems and the evidence needed to assess them.

    10 min read

  3. 03Security Layers

    The nine OSAFIS layer identifiers organize analysis by the object, function, or relationship whose security contract may fail.

    16 min read

  4. 04Security Properties

    A security property names an obligation that an assessment can instantiate for a protected object, function, or relationship.

    19 min read

  5. 05Threat Model

    This threat model describes how an intelligent system can lose a specified security property through adversarial influence or through a security-relevant…

    9 min read

  6. 06Attack Taxonomy

    An attack classification should explain the intervention an adversary attempted, the contract it challenged, and the evidence connecting intervention to effect.

    11 min read

  7. 07Assessment Methodology

    This methodology turns a security hypothesis into a bounded, reproducible assessment. It specifies artifacts and decision rules for investigating whether a…

    13 min read

  8. 08Domain Profiles

    A domain profile specifies how the framework applies to a bounded class of deployments. The analytical vocabulary can be shared across systems while…

    9 min read

  9. 09Vulnerability Registry

    The registry records claims, evidence, decisions, and their revision history. Inclusion does not establish validity or framework recognition.

    8 min read

  10. 10OSAFIS Relationship to Existing Frameworks

    OSAFIS should interoperate with established AI security resources. Its proposed contribution is a contract-centred representation that connects a finding to…

    8 min read

  11. 11OSAFIS Versioning and Identifiers

    The proposed format is MAJOR.MINOR.PATCH with an optional prerelease suffix. A MAJOR revision changes the interpretation or classification obligations of…

    8 min read

  12. 12Future and Autonomous Systems

    OSAFIS should remain useful when an intelligent system learns online, changes its executable rules, observes a digital environment, controls physical…

    9 min read

  13. 13Worked Examples

    All twelve cases below are hypothetical and unexecuted. They are neither validated findings nor registry entries.

    13 min read

OSAFIS identifiers · Open in the interactive site