Skip to main navigation Skip to search Skip to main content

Internet of Things Security: Modelling Smart Industrial Thermostat for Threat Vectors and Common Vulnerabilities

  • Universiti Sains Malaysia
  • NFC Institute of Engineering and Technology

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

3 Scopus citations

Abstract

Internet of Things (IoT) made it possible to realize the vision of connected world, where devices ranging from wearables to industrial IoT solutions provide near real-time data insights. These IoT systems generates staggering amounts of data every single day which is prone to security risks. The threat surface for these IoT devices includes the entire hardware stack, processes, and associated applications, thus requires a systematic threat modeling approach to mitigate system vulnerabilities. In this paper, an industrial Smart Thermostat is threat modelled using the industry leading STRIDE framework to report system vulnerabilities, threat surface and its associated threat vectors. An attack tree is designed to investigate the threats on physical resources of the smart industrial thermostat under study identifying system wide vulnerabilities based on Common Vulnerability Scoring System (CVSS). Finally, the CVSS scores are calculated on the entire threat surface for an improved system design.

Original languageEnglish
Title of host publicationIntelligent Manufacturing and Mechatronics - Proceedings of SympoSIMM 2020
EditorsMuhammad Syahril Bahari, Azmi Harun, Zailani Zainal Abidin, Roshaliza Hamidon, Sakinah Zakaria
PublisherSpringer Science and Business Media Deutschland GmbH
Pages175-186
Number of pages12
ISBN (Print)9789811608650
DOIs
StatePublished - 2021
Externally publishedYes
Event3rd Symposium on Intelligent Manufacturing and Mechatronics, SympoSIMM 2020 - Perlis, Malaysia
Duration: 10 Aug 202010 Aug 2020

Publication series

NameLecture Notes in Mechanical Engineering
ISSN (Print)2195-4356
ISSN (Electronic)2195-4364

Conference

Conference3rd Symposium on Intelligent Manufacturing and Mechatronics, SympoSIMM 2020
Country/TerritoryMalaysia
CityPerlis
Period10/08/2010/08/20

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 9 - Industry, Innovation, and Infrastructure
    SDG 9 Industry, Innovation, and Infrastructure

Keywords

  • CVSS
  • Internet of Things
  • Security modeling
  • Threat modeling

Fingerprint

Dive into the research topics of 'Internet of Things Security: Modelling Smart Industrial Thermostat for Threat Vectors and Common Vulnerabilities'. Together they form a unique fingerprint.

Cite this