{"id":20407,"date":"2020-06-04T09:24:12","date_gmt":"2020-06-04T13:24:12","guid":{"rendered":"https:\/\/www.bu.edu\/hic\/?p=20407"},"modified":"2020-06-04T13:28:30","modified_gmt":"2020-06-04T17:28:30","slug":"automated-threat-modeling-for-connected-vehicles","status":"publish","type":"post","link":"https:\/\/www.bu.edu\/hic\/2020\/06\/04\/automated-threat-modeling-for-connected-vehicles\/","title":{"rendered":"Automated Threat Modeling for Connected Vehicles"},"content":{"rendered":"<h4><img loading=\"lazy\" src=\"\/hic\/files\/2020\/06\/connected-vehicles.jpg\" alt=\"\" width=\"720\" height=\"360\" class=\"aligncenter wp-image-20411\" \/><\/h4>\n<h4>SPRING 2020 RESEARCH INCUBATION AWARDEE<\/h4>\n<p><strong>PI:\u00a0<\/strong><a href=\"https:\/\/www.bu.edu\/eng\/profile\/david-starobinski\/\">David Starobinski<\/a>, Professor, Electrical &amp; Computer Engineering and Systems Engineering, ENG<br \/>\n<strong><span class=\"s1\">Special Track: <\/span><\/strong><a href=\"https:\/\/www.honda-ri.de\/\"><span class=\"s2\">Honda Research Institute Europe<\/span><\/a><\/p>\n<hr \/>\n<p class=\"p1\"><b>What is the Challenge?<br \/>\n<\/b>Misbehavior by compromised vehicles represents a signi\ufb01cant threat to connected vehicle technology. Speci\ufb01cally, a compromised vehicle that has authenticated credentials allowing it to communicate with other vehicles freely. With this privilege, an attacker could use the compromised vehicle to send bogus BSMs containing information that can compromise the safety of the people within the premises of the vehicle.<\/p>\n<figure id=\"attachment20408\" aria-describedby=\"caption-attachment20408\" style=\"width: 210px\" class=\"wp-caption alignright\"><img loading=\"lazy\" src=\"\/hic\/files\/2020\/06\/Starobinski.jpg\" alt=\"\" width=\"200\" height=\"200\" class=\"wp-image-20408\" srcset=\"https:\/\/www.bu.edu\/hic\/files\/2020\/06\/Starobinski.jpg 426w, https:\/\/www.bu.edu\/hic\/files\/2020\/06\/Starobinski-150x150.jpg 150w, https:\/\/www.bu.edu\/hic\/files\/2020\/06\/Starobinski-189x189.jpg 189w, https:\/\/www.bu.edu\/hic\/files\/2020\/06\/Starobinski-100x100.jpg 100w\" sizes=\"(max-width: 200px) 100vw, 200px\" \/><figcaption id=\"caption-attachment20408\" class=\"wp-caption-text\">David Starobinski<\/figcaption><\/figure>\n<p class=\"p1\"><b>What is the Solution?<br \/>\n<\/b>Connected vehicles could dramatically reduce the number of fatalities and serious injuries caused by accidents on our roads and highways. These vehicles periodically broadcast basic safety messages (BSMs) that provide absolute values for position, time, heading, and velocity within a communication range to ensure awareness for other connected vehicles. BSMs enhance tra<span class=\"s1\">\ufb03<\/span>c safety and e<span class=\"s1\">\ufb03<\/span>ciency by allowing vehicles and roadside units (RSUs) to convey information on surrounding events; some of these events include notifying and warning other vehicles about braking actions of the vehicle in front, including warning other vehicles about upcoming tra<span class=\"s1\">\ufb03<\/span>c jams.<\/p>\n<p class=\"p1\"><b>What is the Process?<br \/>\n<\/b>David Starobinski, <span class=\"s2\">Faculty Affiliate of the CRI Lab at the Hariri Institute for Computing <\/span>focuses on freely available tools, with an emphasis on studying their modularity and scalability:<span class=\"s2\">\u00a0<\/span><\/p>\n<p class=\"p1\">The tools are as follows: (i) OWASP Threat Dragon (TD): TD is not only an online threat modeling web application but also a desktop application, which includes system diagramming and a rule engine to auto-generate threats\/mitigation.<\/p>\n<p class=\"p1\">He then selects one of those tools (popularly TD because as it is open-source) and performs a threat assessment for one modality (i.e., a Level 1 autonomous car). The goal would be to demonstrate and enhance the capability of the tool to capture a wide range of threats for misbehavior detection in vehicular environments. The next step would be to expand the tool capability to automate the task of threat modeling to other modalities (i.e., vehicles with higher levels of autonomy).<\/p>\n","protected":false},"excerpt":{"rendered":"<p>SPRING 2020 RESEARCH INCUBATION AWARDEE PI:\u00a0David Starobinski, Professor, Electrical &amp; Computer Engineering and Systems Engineering, ENG Special Track: Honda Research Institute Europe What is the Challenge? Misbehavior by compromised vehicles represents a signi\ufb01cant threat to connected vehicle technology. Speci\ufb01cally, a compromised vehicle that has authenticated credentials allowing it to communicate with other vehicles freely. With [&hellip;]<\/p>\n","protected":false},"author":8550,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[11733,11732],"tags":[],"_links":{"self":[{"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/posts\/20407"}],"collection":[{"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/users\/8550"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/comments?post=20407"}],"version-history":[{"count":7,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/posts\/20407\/revisions"}],"predecessor-version":[{"id":20453,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/posts\/20407\/revisions\/20453"}],"wp:attachment":[{"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/media?parent=20407"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/categories?post=20407"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.bu.edu\/hic\/wp-json\/wp\/v2\/tags?post=20407"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}