loading
Documents

Research.Publish.Connect.

Paper

Authors: Alexandr Vasenev 1 ; Florian Stahl 2 ; Hayk Hamazaryan 3 ; Zhendong Ma 4 ; Lijun Shan 5 ; Joerg Kemmerich 3 and Claire Loiseaux 5

Affiliations: 1 ESI (TNO) and Netherlands ; 2 AVL Software & Functions and Germany ; 3 ZF Friedrichshafen AG and Germany ; 4 AVL and Austria ; 5 Internet of Trust and France

ISBN: 978-989-758-374-2

Keyword(s): Data Flow Diagram, STRIDE Taxonomy, LINDDUN Methodology, UNECE Threat Catalogue, Risk Management.

Abstract: Keeping a vehicle secure implies provide of a long-term support, where over-the-air updates (OTA) play an essential role. Clear understanding of OTA threats is essential to counter them efficiently. Existing research on OTA threats often exclude human actors, such as drivers and maintenance personnel, as well as leave aside privacy threats. This paper addresses the gap by investigates security and privacy OTA threats relevant for vehicle manufacturers for the whole product lifecycle. We report on a practical scenario “long term support”, its data flow elements, and outcomes of threat analyses. We apply state of the art approaches, such as STRIDE (extended with an automotive template) and LINDDUN, to an automotive case and consider an automotive-specific UNECE OTA threat catalogue. Outcomes indicate complementarity of these methods and provide inputs to studies how well they address practical automotive cases.

PDF ImageFull Text

Download
CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.227.235.71

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Vasenev, A.; Stahl, F.; Hamazaryan, H.; Ma, Z.; Shan, L.; Kemmerich, J. and Loiseaux, C. (2019). Practical Security and Privacy Threat Analysis in the Automotive Domain: Long Term Support Scenario for Over-the-Air Updates.In Proceedings of the 5th International Conference on Vehicle Technology and Intelligent Transport Systems - Volume 1: VEHITS, ISBN 978-989-758-374-2, pages 550-555. DOI: 10.5220/0007764205500555

@conference{vehits19,
author={Alexandr Vasenev. and Florian Stahl. and Hayk Hamazaryan. and Zhendong Ma. and Lijun Shan. and Joerg Kemmerich. and Claire Loiseaux.},
title={Practical Security and Privacy Threat Analysis in the Automotive Domain: Long Term Support Scenario for Over-the-Air Updates},
booktitle={Proceedings of the 5th International Conference on Vehicle Technology and Intelligent Transport Systems - Volume 1: VEHITS,},
year={2019},
pages={550-555},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0007764205500555},
isbn={978-989-758-374-2},
}

TY - CONF

JO - Proceedings of the 5th International Conference on Vehicle Technology and Intelligent Transport Systems - Volume 1: VEHITS,
TI - Practical Security and Privacy Threat Analysis in the Automotive Domain: Long Term Support Scenario for Over-the-Air Updates
SN - 978-989-758-374-2
AU - Vasenev, A.
AU - Stahl, F.
AU - Hamazaryan, H.
AU - Ma, Z.
AU - Shan, L.
AU - Kemmerich, J.
AU - Loiseaux, C.
PY - 2019
SP - 550
EP - 555
DO - 10.5220/0007764205500555

Login or register to post comments.

Comments on this Paper: Be the first to review this paper.