Earticle

다운로드

A Study on a Vulnerability Scoring System for Intelligent Buildings

원문정보

초록

영어
The Common Vulnerability Scoring System (CVSS) is a well-known framework for providing the characteristics of a vulnerability and a numerical score reflecting its severity. Since the existing CVSS has been developed for an information technology (IT) environment, it is not suitable for an intelligent building (IB) environment where OT Operational Technology (OT) and Internet of Things (IoT) are integrated. For example, compared to IT systems that prioritize confidentiality, OT systems prioritize safety and have a very long lifespan. Therefore, if a vulnerable component is exploited in an intelligent building environment, the impact may be different from that in the IT environment. This paper identifies problems that may occur when applying the traditional CVSS to an intelligent building environment. We also propose an effective method to extend the CVSS for an intelligent building environment using threat intelligence and rubric.

목차

Abstract
I. INTRODUCTION
II. RELATED WORK
III. PROPOSED PROCESS TO EXTEND CVSS
IV. DETAILED EXPLANATION OF THE PROPOSED PROCESS
A. Analyzing Characteristics of Intelligent Building
B. Threat Intelligence Collections
C. Rubric Development
D. Feedback
E. Metrics Extension
V. DISCUSSION AND CONCOLUSION
References

저자

  • Minsu Park [ Dept. of AI-based Convergence Dankook University Gyeonggi-do Province, Republic of Korea ]
  • Haein Kang [ Dept of AI-based Convergence Dankook University Gyeonggi-do Province, Republic of Korea ]
  • Hyoil Han [ School of Information Technology Ilinoise State University Normal, IL, USA ]
  • kyoungwon Suh [ School of Information Technology Ilinois State University Normal, IL, USA ]

참고문헌

자료제공 : 네이버학술정보

    간행물 정보

    • 간행물
      한국차세대컴퓨팅학회 학술대회
    • 간기
      반년간
    • 수록기간
      2021~2025
    • 십진분류
      KDC 566 DDC 004