DocumentCode :
703911
Title :
SAHARA: A security-aware hazard and risk analysis method
Author :
Macher, Georg ; Sporer, Harald ; Berlach, Reinhard ; Armengaud, Eric ; Kreiner, Christian
Author_Institution :
Inst. for Tech. Inf., Graz Univ. of Technol., Graz, Austria
fYear :
2015
fDate :
9-13 March 2015
Firstpage :
621
Lastpage :
624
Abstract :
Safety and Security are two seemingly contradictory system features, which have challenged researchers for decades. Traditionally, these two features have been treated separately, but due to the increasing knowledge about their mutual impacts, similarities, and interdisciplinary values, they have become more important. Because systems (such as Car2x in the automotive industry) are increasingly interlaced, it is no longer acceptable to assume that safety systems are immune to security risks. Future automotive systems will require appropriate systematic approaches that will support security-aware safety development. Therefore, this paper presents a combined approach of the automotive HARA (hazard analysis and risk assessment) approach with the security domain STRIDE approach, and outlines the impacts of security issues on safety concepts at system level. We present an approach to classify the probability of security threats, which can be used to determine the appropriate number of countermeasures that need to be considered. Furthermore, we analyze the impact of these security threats on the safety analysis of automotive systems. This paper additionally describes how such a method has been developed based on the HARA approach, and how the safety-critical contributions of successful security attacks can be quantified and processed.
Keywords :
automotive engineering; hazards; road safety; safety-critical software; security of data; automotive HARA approach; automotive system; hazard analysis and risk assessment; safety analysis; safety-critical contribution; security attacks; security aware safety development; security domain STRIDE approach; security threat; Automotive engineering; Hazards; ISO standards; Risk management; Security; HARA; ISO 26262; STRIDE; automotive; safety; security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Design, Automation & Test in Europe Conference & Exhibition (DATE), 2015
Conference_Location :
Grenoble
Print_ISBN :
978-3-9815-3704-8
Type :
conf
Filename :
7092463
Link To Document :
بازگشت