On Adoptability and Use Case Exploration of Threat Modeling for Mobile Communication Systems


연구 분야: Safety



학회: CCS '21: Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security


초록

As the attack surface and the number of security incidents in mobile communication networks increase, a common language for threat intelligence gathering and sharing among different parties becomes essential. We addressed this by developing the Bhadra framework [4], a domain-specific conceptual framework that captures adversarial behaviors in end-to-end communication over the mobile networks in our previous work. Nevertheless, the acceptance or adoptability of the framework by the mobile communications industry is still unclear. In this work, we built a threat modeling tool as a companion for Bhadra and conduct a user study with industry experts to evaluate the framework's usefulness and explore its potential use cases besides threat modeling and sharing. Our preliminary results indicate that the mobile communication industry would benefit from a threat modeling framework with a companion tool and its use cases, making it a potential candidate to integrate within work processes.


Author Profile
Hsinyi Chen

Aalto University Espoo Finland

Finland
Author Profile
Siddharth Prakash Rao

Nokia Bell Labs Espoo Finland

Finland

📄 논문 정보

발행 연도 2021년
인용수 2
출판 국가 Finland
사이트 ACM
좋아요 수 0

연관 논문 목록 (339건)