首页> 美国卫生研究院文献>Sensors (Basel Switzerland) >Identifying and Mitigating Phishing Attack Threats in IoT Use Cases Using a Threat Modelling Approach
【2h】

Identifying and Mitigating Phishing Attack Threats in IoT Use Cases Using a Threat Modelling Approach

机译:使用威胁建模方法识别和减轻物联网用例中的网络钓鱼攻击威胁

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Internet of things (IoT) is a technology that enables our daily life objects to connect on the Internet and to send and receive data for a meaningful purpose. In recent years, IoT has led to many revolutions in almost every sector of our society. Nevertheless, security threats to IoT devices and networks are relentlessly disruptive, because of the proliferation of Internet technologies. Phishing is one of the most prevalent threats to all Internet users, in which attackers aim to fraudulently extract sensitive information of a user or system, using fictitious emails, websites, etc. With the rapid increase in IoT devices, attackers are targeting IoT devices such as security cameras, smart cars, etc., and perpetrating phishing attacks to gain control over such vulnerable devices for malicious purposes. In recent decades, such scams have been spreading, and they have become increasingly advanced over time. By following this trend, in this paper, we propose a threat modelling approach to identify and mitigate the cyber-threats that can cause phishing attacks. We considered two significant IoT use cases, i.e., smart autonomous vehicular system and smart home. The proposed work is carried out by applying the STRIDE threat modelling approach to both use cases, to disclose all the potential threats that may cause a phishing attack. The proposed threat modelling approach can support the IoT researchers, engineers, and IoT cyber-security policymakers in securing and protecting the potential threats in IoT devices and systems in the early design stages, to ensure the secure deployment of IoT devices in critical infrastructures.
机译:事情互联网(IOT)是一种技术,使我们的日常生活对象能够在互联网上连接并以有意义的目的发送和接收数据。近年来,IOT几乎在我们社会的每个部门都导致了许多革命。然而,由于互联网技术的扩散,因此对IOT设备和网络的安全威胁是无情的破坏性的。网络钓鱼是对所有互联网用户最普遍的威胁之一,其中攻击者旨在欺诈地提取用户或系统的敏感信息,使用虚构的电子邮件,网站等。随着物联网设备的快速增加,攻击者瞄准IOT设备作为安全摄像头,智能汽车等,以及持续网络钓鱼攻击,以控制这种脆弱的设备以获取恶意目的。近几十年来,这种诈骗一直在蔓延,随着时间的推移,它们已经变得越来越高。通过以下趋势,在本文中,我们提出了一种威胁建模方法来识别和减轻可能导致网络钓鱼攻击的网络威胁。我们考虑了两个重要的物联网用例,即智能自治车辆系统和智能家居。拟议的工作是通过对既有用例应用进步威胁建模方法进行,披露可能导致网络钓鱼攻击的所有潜在威胁。拟议的威胁建模方法可以支持IOT研究人员,工程师和IOT网络安全决策者在早期设计阶段的安全和保护IOT设备和系统中的潜在威胁,以确保在关键基础架构中安全部署IOT设备。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号