Cargando…

Vulnerability Assessment of Sensor Systems

There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor securit...

Descripción completa

Detalles Bibliográficos
Autor principal: Bialas, Andrzej
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2019
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6603553/
https://www.ncbi.nlm.nih.gov/pubmed/31159402
http://dx.doi.org/10.3390/s19112518
_version_ 1783431531638816768
author Bialas, Andrzej
author_facet Bialas, Andrzej
author_sort Bialas, Andrzej
collection PubMed
description There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor security facilities and methodologies are relatively poor compared to other IT products. That is why a methodical approach to the sensor IT security is needed, i.e., risk management, implementation of countermeasures, vulnerability removal, and security evaluation and certification. The author proposes to apply the main security assurance methodology specified in ISO/IEC 15408 Common Criteria to solve specific security problems of sensors. A new Common Criteria compliant method is developed which specifies the vulnerability assessment process and related data in a structured way. The input/output data of the introduced elementary evaluation processes are modeled as ontology classes to work out knowledge bases. The validation shows that sensor-specific knowledge can be acquired during the vulnerability assessment process and then placed in knowledge bases and used. The method can be applied in different IT products, especially those with few certifications, such as sensors. The presented methodology will be implemented in a software tool in the future.
format Online
Article
Text
id pubmed-6603553
institution National Center for Biotechnology Information
language English
publishDate 2019
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-66035532019-07-17 Vulnerability Assessment of Sensor Systems Bialas, Andrzej Sensors (Basel) Article There are more and more applications of sensors in today’s world. Moreover, sensor systems are getting more complex and they are used for many high-risk security-critical purposes. Security assurance is a key issue for sensors and for other information technology (IT) products. Still, sensor security facilities and methodologies are relatively poor compared to other IT products. That is why a methodical approach to the sensor IT security is needed, i.e., risk management, implementation of countermeasures, vulnerability removal, and security evaluation and certification. The author proposes to apply the main security assurance methodology specified in ISO/IEC 15408 Common Criteria to solve specific security problems of sensors. A new Common Criteria compliant method is developed which specifies the vulnerability assessment process and related data in a structured way. The input/output data of the introduced elementary evaluation processes are modeled as ontology classes to work out knowledge bases. The validation shows that sensor-specific knowledge can be acquired during the vulnerability assessment process and then placed in knowledge bases and used. The method can be applied in different IT products, especially those with few certifications, such as sensors. The presented methodology will be implemented in a software tool in the future. MDPI 2019-06-01 /pmc/articles/PMC6603553/ /pubmed/31159402 http://dx.doi.org/10.3390/s19112518 Text en © 2019 by the author. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Bialas, Andrzej
Vulnerability Assessment of Sensor Systems
title Vulnerability Assessment of Sensor Systems
title_full Vulnerability Assessment of Sensor Systems
title_fullStr Vulnerability Assessment of Sensor Systems
title_full_unstemmed Vulnerability Assessment of Sensor Systems
title_short Vulnerability Assessment of Sensor Systems
title_sort vulnerability assessment of sensor systems
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6603553/
https://www.ncbi.nlm.nih.gov/pubmed/31159402
http://dx.doi.org/10.3390/s19112518
work_keys_str_mv AT bialasandrzej vulnerabilityassessmentofsensorsystems