• DocumentCode
    3543440
  • Title

    A Methodology for the Analysis and Modeling of Security Threats and Attacks for Systems of Embedded Components

  • Author

    Ruiz, Jose Fran ; Harjani, Rajesh ; Maña, Antonio ; Desnitsky, Vasily ; Kotenko, Igor ; Chechulin, Andrey

  • Author_Institution
    Dept. de Lenguajes y Cienc. de la Comput., Univ. of Malaga, Malaga, Spain
  • fYear
    2012
  • fDate
    15-17 Feb. 2012
  • Firstpage
    261
  • Lastpage
    268
  • Abstract
    The development of systems based on embedded components is a challenging task because of their distributed, reactive and real-time nature. From a security point of view, embedded devices are basically systems owned by a certain entity, used frequently as part of systems owned by other entities and operated in a potentially hostile environment. The development of security-enhanced systems of embedded components is a difficult task due to different types of threats that may affect such systems, and because the security in systems of embedded devices is currently added as an additional feature when the development is advanced, or avoided as a superfluous characteristic. We present in this paper a methodology for the analysis and modeling of threats and attacks for systems of embedded components. The Intruder Model allows us to describe possible actions a potential intruder can accomplish, depending on his/her capabilities, resources, etc. Using this information, we can define a Threat Model that will specify the threats and attacks that affect different security properties in specific domains.
  • Keywords
    embedded systems; security of data; embedded component; embedded device; hostile environment; intruder model; security threat model; security-enhanced system; Analytical models; Embedded systems; Security; Sensors; Testing; Unified modeling language; embedded systems; security attacks analysis; security modeling; security threats;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel, Distributed and Network-Based Processing (PDP), 2012 20th Euromicro International Conference on
  • Conference_Location
    Garching
  • ISSN
    1066-6192
  • Print_ISBN
    978-1-4673-0226-5
  • Type

    conf

  • DOI
    10.1109/PDP.2012.36
  • Filename
    6169558