Cargando…
Vulnerability Assessment of Sensor Systems
There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor securit...
Autor principal: | |
---|---|
Formato: | Online Artículo Texto |
Lenguaje: | English |
Publicado: |
MDPI
2019
|
Materias: | |
Acceso en línea: | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6603553/ https://www.ncbi.nlm.nih.gov/pubmed/31159402 http://dx.doi.org/10.3390/s19112518 |
_version_ | 1783431531638816768 |
---|---|
author | Bialas, Andrzej |
author_facet | Bialas, Andrzej |
author_sort | Bialas, Andrzej |
collection | PubMed |
description | There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor security facilities and methodologies are relatively poor compared to other IT products. That is why a methodical approach to the sensor IT security is needed, i.e., risk management, implementation of countermeasures, vulnerability removal, and security evaluation and certification. The author proposes to apply the main security assurance methodology specified in ISO/IEC 15408 Common Criteria to solve specific security problems of sensors. A new Common Criteria compliant method is developed which specifies the vulnerability assessment process and related data in a structured way. The input/output data of the introduced elementary evaluation processes are modeled as ontology classes to work out knowledge bases. The validation shows that sensor-specific knowledge can be acquired during the vulnerability assessment process and then placed in knowledge bases and used. The method can be applied in different IT products, especially those with few certifications, such as sensors. The presented methodology will be implemented in a software tool in the future. |
format | Online Article Text |
id | pubmed-6603553 |
institution | National Center for Biotechnology Information |
language | English |
publishDate | 2019 |
publisher | MDPI |
record_format | MEDLINE/PubMed |
spelling | pubmed-66035532019-07-17 Vulnerability Assessment of Sensor Systems Bialas, Andrzej Sensors (Basel) Article There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor security facilities and methodologies are relatively poor compared to other IT products. That is why a methodical approach to the sensor IT security is needed, i.e., risk management, implementation of countermeasures, vulnerability removal, and security evaluation and certification. The author proposes to apply the main security assurance methodology specified in ISO/IEC 15408 Common Criteria to solve specific security problems of sensors. A new Common Criteria compliant method is developed which specifies the vulnerability assessment process and related data in a structured way. The input/output data of the introduced elementary evaluation processes are modeled as ontology classes to work out knowledge bases. The validation shows that sensor-specific knowledge can be acquired during the vulnerability assessment process and then placed in knowledge bases and used. The method can be applied in different IT products, especially those with few certifications, such as sensors. The presented methodology will be implemented in a software tool in the future. MDPI 2019-06-01 /pmc/articles/PMC6603553/ /pubmed/31159402 http://dx.doi.org/10.3390/s19112518 Text en © 2019 by the author. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/). |
spellingShingle | Article Bialas, Andrzej Vulnerability Assessment of Sensor Systems |
title | Vulnerability Assessment of Sensor Systems |
title_full | Vulnerability Assessment of Sensor Systems |
title_fullStr | Vulnerability Assessment of Sensor Systems |
title_full_unstemmed | Vulnerability Assessment of Sensor Systems |
title_short | Vulnerability Assessment of Sensor Systems |
title_sort | vulnerability assessment of sensor systems |
topic | Article |
url | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6603553/ https://www.ncbi.nlm.nih.gov/pubmed/31159402 http://dx.doi.org/10.3390/s19112518 |
work_keys_str_mv | AT bialasandrzej vulnerabilityassessmentofsensorsystems |