Javascript must be enabled to continue!
STRIDE-Based Cybersecurity Threat Modeling, Risk Assessment and Treatment of an In-Vehicle Infotainment System
View through CrossRef
In modern automobiles, the infotainment system is crucial for enhancing driver and passenger capabilities, offering advanced features such as music, navigation, communication, and entertainment. Leveraging Wi-Fi, cellular networks, NFC, and Bluetooth, the system ensures continuous internet connectivity, providing seamless access to information. However, the increasing complexity of IT connectivity in vehicles raises significant cybersecurity concerns, including potential data breaches and exposure of sensitive information. To enhance security in infotainment systems, this study applied component-level threat modeling to a proposed infotainment system using the Microsoft STRIDE model. This approach illustrates potential component-level security issues impacting privacy and security concerns. The study also assessed these impacts using SAHARA and DREAD risk assessment methodologies. The threat modeling process identified 34 potential security threats, each accompanied by detailed information. Moreover, a comparative analysis is performed to compute risk values for prioritizing treatment, followed by recommending mitigation strategies for each identified threat. These identified threats and associated risks require careful consideration to prevent potential cyberattacks before deploying the infotainment system in automotive vehicles.
Title: STRIDE-Based Cybersecurity Threat Modeling, Risk Assessment and Treatment of an In-Vehicle Infotainment System
Description:
In modern automobiles, the infotainment system is crucial for enhancing driver and passenger capabilities, offering advanced features such as music, navigation, communication, and entertainment.
Leveraging Wi-Fi, cellular networks, NFC, and Bluetooth, the system ensures continuous internet connectivity, providing seamless access to information.
However, the increasing complexity of IT connectivity in vehicles raises significant cybersecurity concerns, including potential data breaches and exposure of sensitive information.
To enhance security in infotainment systems, this study applied component-level threat modeling to a proposed infotainment system using the Microsoft STRIDE model.
This approach illustrates potential component-level security issues impacting privacy and security concerns.
The study also assessed these impacts using SAHARA and DREAD risk assessment methodologies.
The threat modeling process identified 34 potential security threats, each accompanied by detailed information.
Moreover, a comparative analysis is performed to compute risk values for prioritizing treatment, followed by recommending mitigation strategies for each identified threat.
These identified threats and associated risks require careful consideration to prevent potential cyberattacks before deploying the infotainment system in automotive vehicles.
Related Results
Cybersecurity and Organisational Performance – the Interplay
Cybersecurity and Organisational Performance – the Interplay
The interplay between cybersecurity and organisational performance is multifaceted in nature, as it is related to how cybersecurity impacts and is impacted by various organisationa...
ThreatBased Security Risk Evaluation in the Cloud
ThreatBased Security Risk Evaluation in the Cloud
Research ProblemCyber attacks are targeting the cloud computing systems, where enterprises, governments, and individuals are outsourcing their storage and computational resources f...
Proposal of an adaptive infotainment system depending on driving scenario complexity
Proposal of an adaptive infotainment system depending on driving scenario complexity
The PhD research project is framed within the plan of industrial doctorates of the “Generalitat de Catalunya”. During the investigation, most of the work was carried out at the fac...
Cybersecurity Guidebook for Cyber-Physical Vehicle Systems
Cybersecurity Guidebook for Cyber-Physical Vehicle Systems
<div class="section abstract">
<div class="htmlview paragraph">This recommended practice provides guidance on vehicle Cybersecurity and was created based off of, and ...
Effects of Urdu Infotainment Programs on Pakistani People: Entertainment, Cultural and Vulgarity Concerns
Effects of Urdu Infotainment Programs on Pakistani People: Entertainment, Cultural and Vulgarity Concerns
Introduction: Infotainment is the term to entertain the public as well as to inform. Infotainment programs include shows based on funny analysis; parodies and moral issue based com...
STRIDE-Based Cybersecurity Threat Modeling, Risk Assessment and Treatment of an Infotainment High Performance Computing (HPC) System
STRIDE-Based Cybersecurity Threat Modeling, Risk Assessment and Treatment of an Infotainment High Performance Computing (HPC) System
In modern automobiles, Infotainment High-Performance Computing (HPC) systems play a vital role in enhancing the capabilities of drivers and passengers by providing advanced feature...
Assessing Cybersecurity Vulnerabilities in Higher Education Institutions: A Comparative Perspective
Assessing Cybersecurity Vulnerabilities in Higher Education Institutions: A Comparative Perspective
Abstract
Higher Education Institutions (HEIs) have become increasingly dependent on digital technologies to support teaching, research, administration, and global c...
Duty Factor Dominates Stride Frequency to Modify Musculoskeletal Peak Loading in Running
Duty Factor Dominates Stride Frequency to Modify Musculoskeletal Peak Loading in Running
ABSTRACT
Background/purpose
Adjusting running style can influence musculoskeletal loading, thereby altering injury risk. Duty factor, defined as ...

