STRIDE 위협모델링을 활용한 이동로봇 배송 서비스 보안 요구사항 도출

Vol. 34, No. 5, pp. 927-947, 10월. 2024
10.13089/JKIISC.2024.34.5.927, Full Text:
Keywords: STRIDE, Threat modeling, mobile robot, Robot Security, Security Requirements
Abstract

Due to the global low birth rate and aging population, there is a growing interest in utilizing robot technology as a solution to address labor shortages. Specifically, mobile robots, which are growing rapidly, have become intelligent enough to recognize their environment and avoid obstacles to carry out tasks. However, the integration of IT technology into these robots has led to an increase in potential security vulnerabilities, and security research has been conducted to prepare countermeasures. However, research to examine the security threats of mobile robots in general is insufficient. To enhance the overall security of robot systems, it is imperative to systematically identify security threats starting from the design phase. In this paper, we identify security threats within the mobile robot delivery service environment using a structured approach that involves Data Flow Diagram and STRIDE threat modeling. Additionally, we visualize vulnerabilities and attack techniques through Attack Tree based on the Attack Library, and a Check List has finally been created to derive security requirements. We have been conducted this study with the hope that the results derived from this study will be utilized in establishing guidelines and policies related to robot security and contribute to the establishment of a safe robot foundation.

Statistics
Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2017)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article
[IEEE Style]
최지용, 이상준, 장재동, "Deriving Mobile Robot Delivery Service Security Requirements Using STRIDE Threat Modeling," Journal of The Korea Institute of Information Security and Cryptology, vol. 34, no. 5, pp. 927-947, 2024. DOI: 10.13089/JKIISC.2024.34.5.927.

[ACM Style]
최지용, 이상준, and 장재동. 2024. Deriving Mobile Robot Delivery Service Security Requirements Using STRIDE Threat Modeling. Journal of The Korea Institute of Information Security and Cryptology, 34, 5, (2024), 927-947. DOI: 10.13089/JKIISC.2024.34.5.927.