Home // SECURWARE 2021, The Fifteenth International Conference on Emerging Security Information, Systems and Technologies // View article
Threat Level Assessment of Smart-Home Stakeholders Using EBIOS Risk Manager
Authors:
N'guessan Yves-Roland Douha
Doudou Fall
Yuzo Taenaka
Youki Kadobayashi
Keywords: EBIOS RM; Internet of Things; Smart Home; Stakeholder; Security.
Abstract:
The smart home is among the emerging technologies designed to improve in-house quality of life by supplying many services, such as home automation, healthcare, and energy management. Recent cyberattacks on smart homes affecting home dwellers' privacy, safety, and security could slow down smart homes' adoption. To identify smart-home attack surfaces, we propose to use a risk analysis method called Expression of Needs and Identification of Security Objectives - Expression des Besoins et Identification des Objectifs de Sécurité (EBIOS) Risk Manager to evaluate the threat level of smart-home stakeholders in the role of threat agents. The contributions of this paper are assessing smart-home stakeholders and identifying attack scenarios in which they could be involved to extend the reflection on smart home security. We are the first to estimate the threat level of fourteen smart-home stakeholders through assessing many metrics. We use a 5-point Likert scale to collect data from security professionals to conduct this assessment. We classify the smart-home stakeholders into various threat zones and find that smart-home inhabitants and home automation service providers have the highest threat agent levels. This investigation will contribute to designing security systems and policies for strengthening the smart-home ecosystem's security.
Pages: 31 to 40
Copyright: Copyright (c) IARIA, 2021
Publication date: November 14, 2021
Published in: conference
ISSN: 2162-2116
ISBN: 978-1-61208-919-5
Location: Athens, Greece
Dates: from November 14, 2021 to November 18, 2021