Threat Modeling and Analysis of Voice Assistant Applications

被引:1
|
作者
Cho, Geumhwan [1 ]
Choi, Jusop [1 ]
Kim, Hyoungshick [1 ]
Hyun, Sangwon [2 ]
Ryoo, Jungwoo [3 ]
机构
[1] Sungkyunkwan Univ, Seoul, South Korea
[2] Chosun Univ, Gwangju, South Korea
[3] Penn State Univ, Altoona, PA USA
关键词
Voice assistant; Threat modeling; STRIDE; DREAD;
D O I
10.1007/978-3-030-17982-3_16
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Voice assistant is an application that helps users to interact with their devices using voice commands in a more intuitive and natural manner. Recently, many voice assistant applications have been popularly deployed on smartphones and voice-controlled smart speakers. However, the threat and security of those applications have been examined only in very few studies. In this paper, we identify potential threats to voice assistant applications and assess the risk of those threats using the STRIDE and DREAD models. Our threat modeling demonstrates that generic voice assistants can potentially have 16 security threats. To mitigate the identified threats, we also discuss several defense strategies.
引用
收藏
页码:197 / 209
页数:13
相关论文
共 50 条
  • [21] Idiolect: A Reconfigurable Voice Coding Assistant
    Considine, Breandan
    Albion, Nicholas
    Si, Xujie
    2023 IEEE/ACM 5TH INTERNATIONAL WORKSHOP ON BOTS IN SOFTWARE ENGINEERING, BOTSE, 2023, : 14 - 18
  • [22] On the Applicability of Security and Privacy Threat Modeling for Blockchain Applications
    Van Landuyt, Dimitri
    Sion, Laurens
    Vandeloo, Emiel
    Joosen, Wouter
    COMPUTER SECURITY, ESORICS 2019, 2020, 11980 : 195 - 203
  • [23] Electronic Mail Voice Assistant(EVA)
    胡瑞敏
    High Technology Letters, 1998, (01) : 3 - 5
  • [24] Voice Assistant for Covid-19
    Primkulov, Shokhrukhbek
    Urolov, Jamshidbek
    Singh, Madhusudan
    INTELLIGENT HUMAN COMPUTER INTERACTION, PT I, 2021, 12615 : 299 - 306
  • [25] Voice activation of a surgical robotic assistant
    Sackier, JM
    Wooters, C
    Jacobs, L
    Halverson, A
    Uecker, D
    Wang, YL
    AMERICAN JOURNAL OF SURGERY, 1997, 174 (04): : 406 - 409
  • [26] Threat Modeling and Analysis for the Cloud Ecosystem
    Manzoor, Salman
    Zhang, Heng
    Suri, Neeraj
    2018 IEEE INTERNATIONAL CONFERENCE ON CLOUD ENGINEERING (IC2E 2018), 2018, : 278 - 281
  • [27] Voice-Enabled Virtual Assistant
    Chandana, Ch Lakshmi
    Ashita, V
    Neha, G.
    Kumar, K. Sravan
    Babu, D. Suresh
    Kishore, G. Krishna
    Bharathi, Y. Vijaya
    SUSTAINABLE COMMUNICATION NETWORKS AND APPLICATION, ICSCN 2021, 2022, 93 : 335 - 346
  • [28] Voice models and analysis for biomedical applications
    Manfredi, C.
    BIOMEDICAL SIGNAL PROCESSING AND CONTROL, 2006, 1 (02) : 99 - 101
  • [29] CLINICAL APPLICATIONS OF ACOUSTIC VOICE ANALYSIS
    FRITZELL, B
    GAUFFIN, J
    HAMMARBERG, B
    SUNDBERG, J
    FOLIA PHONIATRICA, 1976, 28 (4-5): : 230 - 231
  • [30] Analysis and Development of the Model for Google Assistant and Amazon Alexa Voice Assistants Integration
    Savic, Boban
    Milic, Milos
    Vlajic, Sinisa
    2023 27th International Conference on Information Technology, IT 2023, 2023,