LAPSE:2023.32273
Published Article
LAPSE:2023.32273
On the Design of IoT Security: Analysis of Software Vulnerabilities for Smart Grids
Christos-Minas Mathas, Costas Vassilakis, Nicholas Kolokotronis, Charilaos C. Zarakovitis, Michail-Alexandros Kourtis
April 20, 2023
The 5G communication network will underpin a vast number of new and emerging services, paving the way for unprecedented performance and capabilities in mobile networks. In this setting, the Internet of Things (IoT) will proliferate, and IoT devices will be included in many 5G application contexts, including the Smart Grid. Even though 5G technology has been designed by taking security into account, design provisions may be undermined by software-rooted vulnerabilities in IoT devices that allow threat actors to compromise the devices, demote confidentiality, integrity and availability, and even pose risks for the operation of the power grid critical infrastructures. In this paper, we assess the current state of the vulnerabilities in IoT software utilized in smart grid applications from a source code point of view. To that end, we identified and analyzed open-source software that is used in the power grid and the IoT domain that varies in characteristics and functionality, ranging from operating systems to communication protocols, allowing us to obtain a more complete view of the vulnerability landscape. The results of this study can be used in the domain of software development, to enhance the security of produced software, as well as in the domain of automated software testing, targeting improvements to vulnerability detection mechanisms, especially with a focus on the reduction of false positives.
Keywords
Internet of Things, robustness, security, software vulnerabilities
Suggested Citation
Mathas CM, Vassilakis C, Kolokotronis N, Zarakovitis CC, Kourtis MA. On the Design of IoT Security: Analysis of Software Vulnerabilities for Smart Grids. (2023). LAPSE:2023.32273
Author Affiliations
Mathas CM: Department of Informatics and Telecommunications, University of the Peloponnese, 22100 Tripolis, Greece
Vassilakis C: Department of Informatics and Telecommunications, University of the Peloponnese, 22100 Tripolis, Greece [ORCID]
Kolokotronis N: Department of Informatics and Telecommunications, University of the Peloponnese, 22100 Tripolis, Greece
Zarakovitis CC: Institute of Informatics and Telecommunications, National Centre for Scientific Research Demokritos, 15341 Athens, Greece; Innovation Department, Axon Logic P. C., 14231 Athens, Greece [ORCID]
Kourtis MA: Institute of Informatics and Telecommunications, National Centre for Scientific Research Demokritos, 15341 Athens, Greece [ORCID]
Journal Name
Energies
Volume
14
Issue
10
First Page
2818
Year
2021
Publication Date
2021-05-14
Published Version
ISSN
1996-1073
Version Comments
Original Submission
Other Meta
PII: en14102818, Publication Type: Journal Article
Record Map
Published Article

LAPSE:2023.32273
This Record
External Link

doi:10.3390/en14102818
Publisher Version
Download
Files
[Download 1v1.pdf] (444 kB)
Apr 20, 2023
Main Article
License
CC BY 4.0
Meta
Record Statistics
Record Views
89
Version History
[v1] (Original Submission)
Apr 20, 2023
 
Verified by curator on
Apr 20, 2023
This Version Number
v1
Citations
Most Recent
This Version
URL Here
https://psecommunity.org/LAPSE:2023.32273
 
Original Submitter
Auto Uploader for LAPSE
Links to Related Works
Directly Related to This Work
Publisher Version