Abstract
Internet of Things (IoT) made it possible to realize the vision of connected world, where devices ranging from wearables to industrial IoT solutions provide near real-time data insights. These IoT systems generates staggering amounts of data every single day which is prone to security risks. The threat surface for these IoT devices includes the entire hardware stack, processes, and associated applications, thus requires a systematic threat modeling approach to mitigate system vulnerabilities. In this paper, an industrial Smart Thermostat is threat modelled using the industry leading STRIDE framework to report system vulnerabilities, threat surface and its associated threat vectors. An attack tree is designed to investigate the threats on physical resources of the smart industrial thermostat under study identifying system wide vulnerabilities based on Common Vulnerability Scoring System (CVSS). Finally, the CVSS scores are calculated on the entire threat surface for an improved system design.
| Original language | English |
|---|---|
| Title of host publication | Intelligent Manufacturing and Mechatronics - Proceedings of SympoSIMM 2020 |
| Editors | Muhammad Syahril Bahari, Azmi Harun, Zailani Zainal Abidin, Roshaliza Hamidon, Sakinah Zakaria |
| Publisher | Springer Science and Business Media Deutschland GmbH |
| Pages | 175-186 |
| Number of pages | 12 |
| ISBN (Print) | 9789811608650 |
| DOIs | |
| State | Published - 2021 |
| Externally published | Yes |
| Event | 3rd Symposium on Intelligent Manufacturing and Mechatronics, SympoSIMM 2020 - Perlis, Malaysia Duration: 10 Aug 2020 → 10 Aug 2020 |
Publication series
| Name | Lecture Notes in Mechanical Engineering |
|---|---|
| ISSN (Print) | 2195-4356 |
| ISSN (Electronic) | 2195-4364 |
Conference
| Conference | 3rd Symposium on Intelligent Manufacturing and Mechatronics, SympoSIMM 2020 |
|---|---|
| Country/Territory | Malaysia |
| City | Perlis |
| Period | 10/08/20 → 10/08/20 |
UN SDGs
This output contributes to the following UN Sustainable Development Goals (SDGs)
-
SDG 9 Industry, Innovation, and Infrastructure
Keywords
- CVSS
- Internet of Things
- Security modeling
- Threat modeling
Fingerprint
Dive into the research topics of 'Internet of Things Security: Modelling Smart Industrial Thermostat for Threat Vectors and Common Vulnerabilities'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver