A Novel Identity Authentication Mechanism for Unmanned Maritime Vessels Communication Based on MITRE ATT&CK & CK Framework

被引:0
|
作者
He, Jun-Xian [1 ]
Chang, Shih-Hao [2 ]
机构
[1] Tamkang Univ, Dept Comp Sci & Informat Engn, New Taipei, Taiwan
[2] Natl Taipei Univ Technol, Dept Comp Sci & Informat Engn, Taipei, Taiwan
来源
关键词
Unmanned ship; Internet-of-Things; Certificate; fi cate; Authentication; MITER ATT&CK; UUID; INTERNET;
D O I
10.51400/2709-6998.2736
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
With the development of the smart shipping industry, unmanned vessel technology is rapidly evolving, accompanied by a demand for robust Internet of Things (IoT) communication security practices. Key communication technologies for the operation of unmanned vessels include external vessel communication. One crucial aspect is the verification fi cation of the identities of the parties involved in these communication systems, as this ensures secure and trusted interactions between unmanned vessels and port management authorities. Identity authentication plays a vital role in ensuring the secure communication of unmanned vessels. This paper aims to analyze potential risks related to identity authentication technology in unmanned vessel communication systems. To effectively address these risks, we propose leveraging digital certificates fi cates and blockchain technology to achieve device non-repudiation and substitution. Based on this technology, we organize and implement defense strategies using the MITRE ATT&CK & CK framework. This framework provides a comprehensive and systematic approach to understanding potential threats and designing appropriate defense measures. By utilizing this framework, security teams can better comprehend vulnerabilities and formulate effective countermeasures. To validate the effectiveness of the proposed defense framework, we conducted simulation experiments. These experiments helped us evaluate the efficiency fi ciency and reliability of the strategies in real-world scenarios. Through these experiments, we could ascertain whether the countermeasures effectively mitigated the identified fi ed risks and ensured the secure communication of unmanned vessels.
引用
收藏
页码:170 / 180
页数:12
相关论文
共 27 条
  • [21] A process mining-based method for attacker profiling using the MITRE ATT&CK taxonomy
    Rodriguez, Marcelo
    Betarte, Gustavo
    Calegari, Daniel
    JOURNAL OF INTERNET SERVICES AND APPLICATIONS, 2024, 15 (01) : 212 - 232
  • [22] MITRE ATT&CK Based Evaluation on In-Network Deception Technology for Modernized Electrical Substation Systems
    Mashima, Daisuke
    SUSTAINABILITY, 2022, 14 (03)
  • [23] Assessing Cybersecurity Resilience of Distributed Ledger Technology in Energy Sector Using the MITRE ATT&CK® ICS Framework
    Gourisetti, Sri Nikhil Gupta
    Lee, Annabelle
    Reddi, Ramesh
    Isirova, Kateryna
    Touhiduzzaman, Md
    Sebastian-Cardenas, David Jonathan
    Lambert, Kent
    Cali, Umit
    Mylrea, Michael
    Rahimi, Farrokh
    Nitu, Puica
    Huff, Philip
    Pasetti, Marco
    Saha, Shammya Shananda
    2022 IEEE 1ST GLOBAL EMERGING TECHNOLOGY BLOCKCHAIN FORUM: BLOCKCHAIN & BEYOND, IGETBLOCKCHAIN, 2022,
  • [24] Using a Graph Engine to Visualize the Reconnaissance Tactic of the MITRE ATT&CK Framework from UWF-ZeekData22
    Bagui, Sikha S.
    Mink, Dustin
    Bagui, Subhash C.
    Plain, Michael
    Hill, Jadarius
    Elam, Marshall
    FUTURE INTERNET, 2023, 15 (07):
  • [25] Comparing Attack Models for IT Systems: Lockheed Martin's Cyber Kill Chain, MITRE ATT&CK Framework and Diamond Model
    Naik, Nitin
    Jenkins, Paul
    Grace, Paul
    Song, Jingping
    2022 IEEE INTERNATIONAL SYMPOSIUM ON SYSTEMS ENGINEERING (ISSE), 2022,
  • [26] Detecting Reconnaissance and Discovery Tactics from the MITRE ATT&CK Framework in Zeek Conn Logs Using Spark's Machine Learning in the Big Data Framework
    Bagui, Sikha
    Mink, Dustin
    Bagui, Subhash
    Ghosh, Tirthankar
    McElroy, Tom
    Paredes, Esteban
    Khasnavis, Nithisha
    Plenkers, Russell
    SENSORS, 2022, 22 (20)
  • [27] Automatic code generation based on Abstract Syntax-based encoding. Application on malware detection code generation based on MITRE ATT&CK techniques
    Sirbu, Alexandru-Gabriel
    Czibula, Gabriela
    EXPERT SYSTEMS WITH APPLICATIONS, 2025, 264