Up-to-date Threat Modelling for Soft Privacy on Smart Cars

08/22/2023
by   Mario Raciti, et al.
0

Physical persons playing the role of car drivers consume data that is sourced from the Internet and, at the same time, themselves act as sources of relevant data. It follows that citizens' privacy is potentially at risk while they drive, hence the need to model privacy threats in this application domain. This paper addresses the privacy threats by updating a recent threat-modelling methodology and by tailoring it specifically to the soft privacy target property, which ensures citizens' full control on their personal data. The methodology now features the sources of documentation as an explicit variable that is to be considered. It is demonstrated by including a new version of the de-facto standard LINDDUN methodology as well as an additional source by ENISA which is found to be relevant to soft privacy. The main findings are a set of 23 domain-independent threats, 43 domain-specific assets and 525 domain-dependent threats for the target property in the automotive domain. While these exceed their previous versions, their main value is to offer self-evident support to at least two arguments. One is that LINDDUN has evolved much the way our original methodology already advocated because a few of our previously suggested extensions are no longer outstanding. The other one is that ENISA's treatment of privacy aboard smart cars should be extended considerably because our 525 threats fall in the same scope.

READ FULL TEXT

page 5

page 9

research
06/07/2023

A Threat Model for Soft Privacy on Smart Cars

Modern cars are getting so computerised that ENISA's phrase "smart cars"...
research
03/18/2023

How to Model Privacy Threats in the Automotive Domain

This paper questions how to approach threat modelling in the automotive ...
research
07/19/2022

Privacy Threats on the Internet of Medical Things

The Internet of Medical Things (IoMT) is a frequent target of attacks – ...
research
09/25/2020

Target Privacy Threat Modeling for COVID-19 Exposure Notification Systems

The adoption of digital contact tracing (DCT) technology during the COVI...
research
07/20/2022

Fair Context-Aware Privacy Threat Modelling

Given the progressive nature of the world today, fairness is a very impo...
research
11/20/2021

Privacy and modern cars through a dual lens

Modern cars technologies are evolving quickly. They collect a variety of...
research
08/04/2023

Poster: Patient Community – A Test Bed For Privacy Threat Analysis

Research and development of privacy analysis tools currently suffers fro...

Please sign up or login with your details

Forgot password? Click here to reset