TUHH Open Research
Help
  • Log In
    New user? Click here to register.Have you forgotten your password?
  • English
  • Deutsch
  • Communities & Collections
  • Publications
  • Research Data
  • People
  • Institutions
  • Projects
  • Statistics
  1. Home
  2. TUHH
  3. Publication References
  4. STRIPED: A Threat Analysis Method for IoT Systems
 
Options

STRIPED: A Threat Analysis Method for IoT Systems

Publikationstyp
Conference Paper
Date Issued
2022-08
Sprache
English
Author(s)
Srikumar, Kamakshi  
Kashish, Komal  
Eggers, Kolja  
Díaz Ferreyra, Nicolás  orcid-logo
Koch, Julian  orcid-logo
Schüppstuhl, Thorsten  orcid-logo
Scandariato, Riccardo  
Institut
Software Security E-22  
TORE-URI
http://hdl.handle.net/11420/13577
Article Number
96
Citation
17th International Conference on Availability, Reliability and Security (ARES 2022)
Contribution to Conference
17th International Conference on Availability, Reliability and Security, ARES 2022  
Publisher DOI
10.1145/3538969.3538970
Scopus ID
2-s2.0-85136952427
Currently, IoT systems display a poor level of security, as 50% of IoT devices are vulnerable to severe attacks, according to research. In an attempt to ameliorate the situation, we propose STRIPED, a threat analysis technique that focuses particularly on threat scenarios involving IoT devices that can be physically accessed by attackers. We evaluate STRIPED in a two-pronged way. First, we assess its performance compared to STRIDE (from which STRIPED is derived) in the context of a case study from the manufacturing industry. Second, we gather the feedback of 8 security experts working in a large, multinational company that specializes in secure IoT products for the domains of automotive, industrial, mobile and smart-home applications. These initial evaluation attempts provide encouraging evidence and suggest our method is a step in the right direction of facilitating security-by-design in IoT systems, especially industrial ones.
Subjects
IIoT
IoT
physical threats
security
STRIDE
threat analysis
TUHH
Weiterführende Links
  • Contact
  • Send Feedback
  • Cookie settings
  • Privacy policy
  • Impress
DSpace Software

Built with DSpace-CRIS software - Extension maintained and optimized by 4Science
Design by effective webwork GmbH

  • Deutsche NationalbibliothekDeutsche Nationalbibliothek
  • ORCiD Member OrganizationORCiD Member Organization
  • DataCiteDataCite
  • Re3DataRe3Data
  • OpenDOAROpenDOAR
  • OpenAireOpenAire
  • BASE Bielefeld Academic Search EngineBASE Bielefeld Academic Search Engine
Feedback