CINXE.COM
Creating a Security Enforcement Environment for a Vehicular Platform
<!DOCTYPE html> <html lang="en" dir="ltr"> <head> <meta charset="utf-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta name="google-site-verification" content="5fPGCLllnWrvFxH9QWI0l1TadV7byeEvfPcyK2VkS_s"/> <meta name="google-site-verification" content="Rp5zp04IKW-s1IbpTOGB7Z6XY60oloZD5C3kTM-AiY4"/> <meta name="generator" content="InvenioRDM 13.0"/> <meta name="description" content="The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism's effectiveness and highlight its potential to enhance security while minimizing the impact on performance." /> <meta name="citation_title" content="Creating a Security Enforcement Environment for a Vehicular Platform" /> <meta name="citation_doi" content="10.5281/zenodo.10282180" /> <meta name="citation_keywords" content="security" /> <meta name="citation_keywords" content="Software Intrusion Detection" /> <meta name="citation_abstract_html_url" content="https://zenodo.org/records/10282180" /> <meta property="og:title" content="Creating a Security Enforcement Environment for a Vehicular Platform" /> <meta property="og:description" content="The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism's effectiveness and highlight its potential to enhance security while minimizing the impact on performance." /> <meta property="og:url" content="https://zenodo.org/records/10282180" /> <meta property="og:site_name" content="Zenodo" /> <meta name="twitter:card" content="summary" /> <meta name="twitter:site" content="@zenodo_org" /> <meta name="twitter:title" content="Creating a Security Enforcement Environment for a Vehicular Platform" /> <meta name="twitter:description" content="The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism's effectiveness and highlight its potential to enhance security while minimizing the impact on performance." /> <meta name="citation_pdf_url" content="https://zenodo.org/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf"/> <link rel="alternate" type="application/pdf" href="https://zenodo.org/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf"> <link rel="canonical" href="https://zenodo.org/records/10282180"> <title>Creating a Security Enforcement Environment for a Vehicular Platform</title> <link rel="shortcut icon" type="image/x-icon" href="/static/favicon.ico"/> <link rel="apple-touch-icon" sizes="120x120" href="/static/apple-touch-icon-120.png"/> <link rel="apple-touch-icon" sizes="152x152" href="/static/apple-touch-icon-152.png"/> <link rel="apple-touch-icon" sizes="167x167" href="/static/apple-touch-icon-167.png"/> <link rel="apple-touch-icon" sizes="180x180" href="/static/apple-touch-icon-180.png"/> <link rel="stylesheet" href="/static/dist/css/3526.0d9b3c8be998e2e93a52.css" /> <!-- HTML5 shim and Respond.js for IE8 support of HTML5 elements and media queries --> <!--[if lt IE 9]> <script src="https://oss.maxcdn.com/html5shiv/3.7.2/html5shiv.min.js"></script> <script src="https://oss.maxcdn.com/respond/1.4.2/respond.min.js"></script> <![endif]--> </head> <body data-invenio-config='{"isMathJaxEnabled": "//cdnjs.cloudflare.com/ajax/libs/mathjax/3.2.2/es5/tex-mml-chtml.js?config=TeX-AMS-MML_HTMLorMML"}' itemscope itemtype="http://schema.org/WebPage" data-spy="scroll" data-target=".scrollspy-target"> <a id="skip-to-main" class="ui button primary ml-5 mt-5 skip-link" href="#main">Skip to main</a> <!--[if lt IE 8]> <p class="browserupgrade">You are using an <strong>outdated</strong> browser. Please <a href="http://browsehappy.com/">upgrade your browser</a> to improve your experience.</p> <![endif]--> <div> <header class="theme header"> <div class="outer-navbar"> <div class="ui container invenio-header-container"> <nav id="invenio-nav" class="ui inverted menu borderless p-0"> <div class="item logo p-0"> <a class="logo-link" href="/"> <img class="ui image rdm-logo" src="/static/images/invenio-rdm.svg" alt="Zenodo home"/> </a> </div> <div id="rdm-burger-toggle"> <button id="rdm-burger-menu-icon" class="ui button transparent" aria-label="Menu" aria-haspopup="menu" aria-expanded="false" aria-controls="invenio-menu" > <span class="navicon" aria-hidden="true"></span> </button> </div> <nav id="invenio-menu" aria-labelledby="rdm-burger-menu-icon" class="ui fluid menu borderless mobile-hidden" > <button id="rdm-close-burger-menu-icon" class="ui button transparent" aria-label="Close menu" > <span class="navicon" aria-hidden="true"></span> </button> <div class="item p-0 search-bar"> <div id="header-search-bar" data-options='[{"key": "communities", "text": "In this community", "value": "/communities/secopera/records"}, {"key": "records", "text": "All Zenodo", "value": "/search"}]'> <div class="ui fluid search"> <div class="ui icon input"> <input autocomplete="off" aria-label="Search records" placeholder="Search records..." type="text" tabindex="0" class="prompt" value="" > <i aria-hidden="true" class="search icon"></i> </div> </div> </div> </div> <div class="item"> <a href="/communities">Communities</a> </div> <div class="item"> <a href="/me/uploads">My dashboard</a> </div> <div class="right menu item"> <form> <a href="/login/?next=%2Frecords%2F10282180" class="ui button auth-button" aria-busy="false" aria-live="polite" aria-label="Log in" > <i class="sign-in icon auth-icon" aria-hidden="true"></i> Log in </a> <a href="/signup/" class="ui button signup"> <i class="edit outline icon"></i> Sign up </a> </form> </div> </nav> </nav> </div> </header> </div> <main id="main"> <div class="invenio-page-body"> <section id="banners" class="banners" aria-label="Information banner"> <!-- COMMUNITY HEADER: hide it when displaying the submission request --> <div class="ui fluid container page-subheader-outer with-submenu compact ml-0-mobile mr-0-mobile"> <div class="ui container page-subheader"> <div class="page-subheader-element"> <img class="ui rounded image community-header-logo" src="https://zenodo.org/api/communities/0eccb842-064f-4c42-959b-089eeeea06b1/logo" alt="" /> </div> <div class="page-subheader-element"> <div class="ui header"> <a href="/communities/secopera/records" class="ui small header"> SecOPERA - Secure OPen source softwarE and hardwaRe Adaptable framework </a> <!-- Show the icon for subcommunities --> </div> </div> </div> </div> <!-- /COMMUNITY HEADER --> <!-- PREVIEW HEADER --> <!-- /PREVIEW HEADER --> </section> <div class="ui container"> <div class="ui relaxed grid mt-5"> <div class="two column row top-padded"> <article class="sixteen wide tablet eleven wide computer column main-record-content"> <section id="record-info" aria-label="Publication date and version number"> <div class="ui grid middle aligned"> <div class="two column row"> <div class="left floated left aligned column"> <span class="ui" title="Publication date"> Published December 7, 2023 </span> <span class="label text-muted"> | Version v1</span> </div> <div class="right floated right aligned column"> <span role="note" class="ui label horizontal small neutral mb-5" aria-label="Resource type" > Conference paper </span> <span role="note" class="ui label horizontal small access-status open mb-5" data-tooltip="The record and files are publicly accessible." data-inverted="" aria-label="Access status" > <i class="icon unlock" aria-hidden="true"></i> <span aria-label="The record and files are publicly accessible."> Open </span> </span> </div> </div> </div> </section> <div class="ui divider hidden"></div><section id="record-title-section" aria-label="Record title and creators"> <h1 id="record-title" class="wrap-overflowing-text">Creating a Security Enforcement Environment for a Vehicular Platform</h1> <section id="creatibutors" aria-label="Creators and contributors"> <div class="ui grid"> <div class="row ui accordion affiliations"> <div class="sixteen wide mobile twelve wide tablet thirteen wide computer column"> <h3 class="sr-only">Creators</h3> <ul class="creatibutors"> <li class="creatibutor-wrap separated"> <a class="ui creatibutor-link" data-tooltip="AEGIS IT RESEARCH GmbH, Braunschweig, Germany" href="/search?q=metadata.creators.person_or_org.name%3A%22Tsantekidis,+Marinos%22" > <span class="creatibutor-name">Tsantekidis, Marinos</span><sup class="font-tiny">1</sup></a> </li> <li class="creatibutor-wrap separated"> <a class="ui creatibutor-link" data-tooltip="Technical University of Munich, Munich, Germany" href="/search?q=metadata.creators.person_or_org.name%3A%22Abdelghani,+Souleima%22" > <span class="creatibutor-name">Abdelghani, Souleima</span><sup class="font-tiny">2</sup></a> </li> <li class="creatibutor-wrap separated"> <a class="ui creatibutor-link" data-tooltip="Technical University of Munich, Munich, Germany" href="/search?q=metadata.creators.person_or_org.name%3A%22Hamad,+Mohammad%22" > <span class="creatibutor-name">Hamad, Mohammad</span><sup class="font-tiny">2</sup></a> </li> <li class="creatibutor-wrap separated"> <a class="ui creatibutor-link" data-tooltip="Technical University of Braunschweig, Braunschweig, Germany" href="/search?q=metadata.creators.person_or_org.name%3A%22Prevelakis,+Vassilis%22" > <span class="creatibutor-name">Prevelakis, Vassilis</span><sup class="font-tiny">3</sup></a> </li> </ul> </div> <div class="ui sixteen wide tablet three wide computer column title right aligned bottom aligned"> <button class="ui affiliations-button trigger button mini mr-0" aria-controls="creators-affiliations" data-open-text="Show affiliations" data-close-text="Hide affiliations" aria-expanded="false" > Show affiliations </button> </div> <section class="ui sixteen wide column content" id="creators-affiliations" aria-label="Affiliations for creators"> <ul> <li> 1. AEGIS IT RESEARCH GmbH, Braunschweig, Germany </li> <li> 2. Technical University of Munich, Munich, Germany </li> <li> 3. Technical University of Braunschweig, Braunschweig, Germany </li> </ul> </section> </div> </div> </section> </section> <section id="description" class="rel-mt-2 rich-input-content" aria-label="Record description"> <h2 id="description-heading" class="sr-only">Description</h2> <div style="word-wrap: break-word;"> <p><p>The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism's effectiveness and highlight its potential to enhance security while minimizing the impact on performance.</p></p> </div> </section> <section id="additional-description-1" class="rel-mt-2 rich-input-content" aria-label="Notes"> <h2>Notes <span class="text-muted language">(English)</span> </h2> <div class="ui message warning"> <p>This work is supported by the following European Union-funded projects: a) JCOP (Agreement No.: INEA/CE- F/ICT/A2020/2373266), b) CyberSecPro (Agreement No.: 101083594), c) SecOPERA (Agreement No.: 101070599) and d) CyberSecDome (Agreement No.: 101120779).</p> </div> </section> <section id="record-files" class="rel-mt-2 rel-mb-3" aria-label="Files" ><h2 id="files-heading">Files</h2> <div class="ui accordion panel mb-10 open" href="#files-preview-accordion-panel"> <h3 class="active title panel-heading open m-0"> <div role="button" id="files-preview-accordion-trigger" aria-controls="files-preview-accordion-panel" aria-expanded="true" tabindex="0" class="trigger" aria-label="File preview" > <span id="preview-file-title">Tsantekidis_et_al_CSCN2023.pdf</span> <i class="angle right icon" aria-hidden="true"></i> </div> </h3> <div role="region" id="files-preview-accordion-panel" aria-labelledby="files-preview-accordion-trigger" class="active content preview-container pt-0 open" > <div> <iframe title="Preview" class="preview-iframe" id="preview-iframe" name="preview-iframe" src="/records/10282180/preview/Tsantekidis_et_al_CSCN2023.pdf?include_deleted=0" > </iframe> </div> </div> </div> <div class="ui accordion panel mb-10 open" href="#files-list-accordion-panel"> <h3 class="active title panel-heading open m-0"> <div role="button" id="files-list-accordion-trigger" aria-controls="files-list-accordion-panel" aria-expanded="true" tabindex="0" class="trigger"> Files <small class="text-muted"> (557.2 kB)</small> <i class="angle right icon" aria-hidden="true"></i> </div> </h3> <div role="region" id="files-list-accordion-panel" aria-labelledby="files-list-accordion-trigger" class="active content pt-0"> <div> <table class="ui striped table files fluid open"> <thead> <tr> <th>Name</th> <th>Size</th> <th class> <a role="button" class="ui compact mini button right floated archive-link" href="https://zenodo.org/api/records/10282180/files-archive"> <i class="file archive icon button" aria-hidden="true"></i> Download all </a> </th> </tr> </thead> <tbody> <tr> <td class="ten wide"> <div> <a href="/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf?download=1">Tsantekidis_et_al_CSCN2023.pdf</a> </div> <small class="ui text-muted font-tiny">md5:5b2ed3973a903c36672e1a3f09c575c2 <div class="ui icon inline-block" data-tooltip="This is the file fingerprint (checksum), which can be used to verify the file integrity."> <i class="question circle checksum icon"></i> </div> </small> </td> <td>557.2 kB</td> <td class="right aligned"> <span> <a role="button" class="ui compact mini button preview-link" href="/records/10282180/preview/Tsantekidis_et_al_CSCN2023.pdf?include_deleted=0" target="preview-iframe" data-file-key="Tsantekidis_et_al_CSCN2023.pdf"> <i class="eye icon" aria-hidden="true"></i>Preview </a> <a role="button" class="ui compact mini button" href="/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf?download=1"> <i class="download icon" aria-hidden="true"></i>Download </a> </span> </td> </tr> </tbody> </table> </div> </div> </div> </section> <section id="additional-details" class="rel-mt-2" aria-label="Additional record details"> <h2 id="record-details-heading">Additional details</h2> <div class="ui divider"></div> <div class="ui grid"> <div class="sixteen wide mobile four wide tablet three wide computer column"> <h3 class="ui header">Identifiers</h3> </div> <div class="sixteen wide mobile twelve wide tablet thirteen wide computer column"> <dl class="details-list"> <dt class="ui tiny header">DOI</dt> <dd> <a href="https://doi.org/10.1109/CSCN60443.2023.10453176" target="_blank" title="Opens in new tab"> 10.1109/CSCN60443.2023.10453176 </a> </dd> </dl> </div> </div> <div class="ui divider"></div> <div class="ui grid"> <div class="sixteen wide mobile four wide tablet three wide computer column"> <h3 class="ui header">Funding</h3> </div> <div class="sixteen wide mobile twelve wide tablet thirteen wide computer column"> <dl class="details-list"> <dt class="ui tiny header"> <span class="mr-5"> SecOPERA – Secure OPen source softwarE and hardwaRe Adaptable framework </span><span class="ui mini basic label ml-0 mr-5" id="number-label-0"> 101070599 </span> <a href="https://cordis.europa.eu/projects/101070599" target="_blank" rel="noopener noreferrer" aria-label="Open external link"> <i class="external alternate icon"></i> </a></dt><dd class="text-muted">European Commission</dd> <dt class="ui tiny header"> <span class="mr-5"> CyberSecDome – An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures </span><span class="ui mini basic label ml-0 mr-5" id="number-label-1"> 101120779 </span> <a href="https://cordis.europa.eu/projects/101120779" target="_blank" rel="noopener noreferrer" aria-label="Open external link"> <i class="external alternate icon"></i> </a></dt><dd class="text-muted">European Commission</dd> <dt class="ui tiny header"> <span class="mr-5"> Joint Cybersecurity Operations Platform (JCOP) </span><span class="ui mini basic label ml-0 mr-5" id="number-label-2"> INEA/CEF/ICT/A2020/2373266 </span></dt><dd class="text-muted">European Commission</dd> <dt class="ui tiny header"> <span class="mr-5"> Cyber Security Competence Development (CyberSecPro) </span><span class="ui mini basic label ml-0 mr-5" id="number-label-3"> 101083594 </span></dt><dd class="text-muted">European Commission</dd> </dl> </div> </div> <div class="ui divider"></div> </section> <section id="citations-search" data-record-pids='{"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282180", "provider": "datacite"}, "oai": {"identifier": "oai:zenodo.org:10282180", "provider": "oai"}}' data-record-parent-pids='{"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282179", "provider": "datacite"}}' data-citations-endpoint="https://zenodo-broker.web.cern.ch/api/relationships" aria-label="Record citations" class="rel-mb-1" > </section> </article> <aside class="sixteen wide tablet five wide computer column sidebar" aria-label="Record details"> <section id="metrics" aria-label="Metrics" class="ui segment rdm-sidebar sidebar-container"> <div class="ui tiny two statistics rel-mt-1"> <div class="ui statistic"> <div class="value">62</div> <div class="label"> <i aria-hidden="true" class="eye icon"></i> Views </div> </div> <div class="ui statistic"> <div class="value">49</div> <div class="label"> <i aria-hidden="true" class="download icon"></i> Downloads </div> </div> </div> <div class="ui accordion rel-mt-1 centered"> <div class="title"> <i class="caret right icon" aria-hidden="true"></i> <span tabindex="0" class="trigger" data-open-text="Show more details" data-close-text="Show less details" > Show more details </span> </div> <div class="content"> <table id="record-statistics" class="ui definition table fluid"> <thead> <tr> <th></th> <th class="right aligned">All versions</th> <th class="right aligned">This version</th> </tr> </thead> <tbody> <tr> <td> Views <i tabindex="0" role="button" style="position:relative" class="popup-trigger question circle small icon" aria-expanded="false" aria-label="More info" data-variation="mini inverted" > </i> <p role="tooltip" class="popup-content ui flowing popup transition hidden"> Total views </p> </td> <td data-label="All versions" class="right aligned"> 62 </td> <td data-label="This version" class="right aligned"> 62 </td> </tr> <tr> <td> Downloads <i tabindex="0" role="button" style="position:relative" class="popup-trigger question circle small icon" aria-expanded="false" aria-label="More info" data-variation="mini inverted" > </i> <p role="tooltip" class="popup-content ui flowing popup transition hidden"> Total downloads </p> </td> <td data-label="All versions" class="right aligned"> 49 </td> <td data-label="This version" class="right aligned"> 49 </td> </tr> <tr> <td> Data volume <i tabindex="0" role="button" style="position:relative" class="popup-trigger question circle small icon" aria-expanded="false" aria-label="More info" data-variation="mini inverted" > </i> <p role="tooltip" class="popup-content ui flowing popup transition hidden"> Total data volume </p> </td> <td data-label="All versions" class="right aligned">33.4 MB</td> <td data-label="This version" class="right aligned">33.4 MB</td> </tr> </tbody> </table> <p class="text-align-center rel-mt-1"> <small> <a href="/help/statistics">More info on how stats are collected....</a> </small> </p> </div> </div> </section> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Versions</h2> <div id="record-versions" class="ui segment rdm-sidebar bottom attached pl-0 pr-0 pt-0"> <div class="versions"> <div id="recordVersions" data-record='{"access": {"embargo": {"active": false, "reason": null}, "files": "public", "record": "public", "status": "open"}, "created": "2023-12-07T11:25:53.525993+00:00", "custom_fields": {"meeting:meeting": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}}, "deletion_status": {"is_deleted": false, "status": "P"}, "expanded": {"parent": {"access": {"owned_by": {"active": null, "blocked_at": null, "confirmed_at": null, "email": "", "id": "558474", "is_current_user": false, "links": {"avatar": "https://zenodo.org/api/users/558474/avatar.svg", "records_html": "https://zenodo.org/search/records?q=parent.access.owned_by.user:558474", "self": "https://zenodo.org/api/users/558474"}, "profile": {"affiliations": "", "full_name": ""}, "username": "SecOPERA", "verified_at": null}}, "communities": {"default": {"access": {"review_policy": "open", "visibility": "public"}, "id": "0eccb842-064f-4c42-959b-089eeeea06b1", "links": {"logo": "https://zenodo.org/api/communities/0eccb842-064f-4c42-959b-089eeeea06b1/logo"}, "metadata": {"description": null, "title": "SecOPERA - Secure OPen source softwarE and hardwaRe Adaptable framework", "type": null}, "slug": "secopera"}}}}, "files": {"count": 1, "enabled": true, "entries": {"Tsantekidis_et_al_CSCN2023.pdf": {"access": {"hidden": false}, "checksum": "md5:5b2ed3973a903c36672e1a3f09c575c2", "ext": "pdf", "id": "0381696e-abb3-4106-a70c-654ebca2dbfe", "key": "Tsantekidis_et_al_CSCN2023.pdf", "links": {"content": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf/content", "iiif_api": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/full/0/default.png", "iiif_base": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf", "iiif_canvas": "https://zenodo.org/api/iiif/record:10282180/canvas/Tsantekidis_et_al_CSCN2023.pdf", "iiif_info": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/info.json", "self": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf"}, "metadata": null, "mimetype": "application/pdf", "size": 557197, "storage_class": "L"}}, "order": [], "total_bytes": 557197}, "id": "10282180", "is_draft": false, "is_published": true, "links": {"access": "https://zenodo.org/api/records/10282180/access", "access_grants": "https://zenodo.org/api/records/10282180/access/grants", "access_links": "https://zenodo.org/api/records/10282180/access/links", "access_request": "https://zenodo.org/api/records/10282180/access/request", "access_users": "https://zenodo.org/api/records/10282180/access/users", "archive": "https://zenodo.org/api/records/10282180/files-archive", "archive_media": "https://zenodo.org/api/records/10282180/media-files-archive", "communities": "https://zenodo.org/api/records/10282180/communities", "communities-suggestions": "https://zenodo.org/api/records/10282180/communities-suggestions", "doi": "https://doi.org/10.5281/zenodo.10282180", "draft": "https://zenodo.org/api/records/10282180/draft", "files": "https://zenodo.org/api/records/10282180/files", "latest": "https://zenodo.org/api/records/10282180/versions/latest", "latest_html": "https://zenodo.org/records/10282180/latest", "media_files": "https://zenodo.org/api/records/10282180/media-files", "parent": "https://zenodo.org/api/records/10282179", "parent_doi": "https://doi.org/10.5281/zenodo.10282179", "parent_doi_html": "https://zenodo.org/doi/10.5281/zenodo.10282179", "parent_html": "https://zenodo.org/records/10282179", "requests": "https://zenodo.org/api/records/10282180/requests", "reserve_doi": "https://zenodo.org/api/records/10282180/draft/pids/doi", "self": "https://zenodo.org/api/records/10282180", "self_doi": "https://doi.org/10.5281/zenodo.10282180", "self_doi_html": "https://zenodo.org/doi/10.5281/zenodo.10282180", "self_html": "https://zenodo.org/records/10282180", "self_iiif_manifest": "https://zenodo.org/api/iiif/record:10282180/manifest", "self_iiif_sequence": "https://zenodo.org/api/iiif/record:10282180/sequence/default", "thumbnails": {"10": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^10,/0/default.jpg", "100": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^100,/0/default.jpg", "1200": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^1200,/0/default.jpg", "250": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^250,/0/default.jpg", "50": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^50,/0/default.jpg", "750": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^750,/0/default.jpg"}, "versions": "https://zenodo.org/api/records/10282180/versions"}, "media_files": {"count": 1, "enabled": true, "entries": {"Tsantekidis_et_al_CSCN2023.pdf.ptif": {"access": {"hidden": true}, "ext": "ptif", "id": "969c5c5e-852d-4b15-9b72-7a13c4a2c804", "key": "Tsantekidis_et_al_CSCN2023.pdf.ptif", "links": {"content": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf.ptif/content", "self": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf.ptif"}, "metadata": null, "mimetype": "application/octet-stream", "processor": {"source_file_id": "0381696e-abb3-4106-a70c-654ebca2dbfe", "status": "finished", "type": "image-tiles"}, "size": 0, "storage_class": "L"}}, "order": [], "total_bytes": 0}, "metadata": {"additional_descriptions": [{"description": "\u003cp\u003eThis work is supported by the following European Union-funded projects: a) JCOP (Agreement No.: INEA/CE- F/ICT/A2020/2373266), b) CyberSecPro (Agreement No.: 101083594), c) SecOPERA (Agreement No.: 101070599) and d) CyberSecDome (Agreement No.: 101120779).\u003c/p\u003e", "lang": {"id": "eng", "title": {"en": "English"}}, "type": {"id": "notes", "title": {"de": "Anmerkungen", "en": "Notes"}}}], "creators": [{"affiliations": [{"name": "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"}], "person_or_org": {"family_name": "Tsantekidis", "given_name": "Marinos", "name": "Tsantekidis, Marinos", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Munich, Munich, Germany"}], "person_or_org": {"family_name": "Abdelghani", "given_name": "Souleima", "name": "Abdelghani, Souleima", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Munich, Munich, Germany"}], "person_or_org": {"family_name": "Hamad", "given_name": "Mohammad", "name": "Hamad, Mohammad", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Braunschweig, Braunschweig, Germany"}], "person_or_org": {"family_name": "Prevelakis", "given_name": "Vassilis", "name": "Prevelakis, Vassilis", "type": "personal"}}], "description": "\u003cp\u003eThe ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism\u0027s effectiveness and highlight its potential to enhance security while minimizing the impact on performance.\u003c/p\u003e", "funding": [{"award": {"acronym": "SecOPERA", "id": "00k4n6c32::101070599", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101070599", "scheme": "url"}], "number": "101070599", "program": "HORIZON.2.3", "title": {"en": "Secure OPen source softwarE and hardwaRe Adaptable framework"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"acronym": "CyberSecDome", "id": "00k4n6c32::101120779", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101120779", "scheme": "url"}], "number": "101120779", "program": "HORIZON.2.3", "title": {"en": "An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "INEA/CEF/ICT/A2020/2373266", "title": {"en": "Joint Cybersecurity Operations Platform (JCOP)"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "101083594", "title": {"en": "Cyber Security Competence Development (CyberSecPro)"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}], "identifiers": [{"identifier": "10.1109/CSCN60443.2023.10453176", "scheme": "doi"}], "languages": [{"id": "eng", "title": {"en": "English"}}], "publication_date": "2023-12-07", "publisher": "IEEE", "resource_type": {"id": "publication-conferencepaper", "title": {"de": "Konferenzbeitrag", "en": "Conference paper"}}, "rights": [{"description": {"en": "The Creative Commons Attribution license allows re-distribution and re-use of a licensed work on the condition that the creator is appropriately credited."}, "icon": "cc-by-icon", "id": "cc-by-4.0", "props": {"scheme": "spdx", "url": "https://creativecommons.org/licenses/by/4.0/legalcode"}, "title": {"en": "Creative Commons Attribution 4.0 International"}}], "subjects": [{"subject": "security"}, {"subject": "Software Intrusion Detection"}], "title": "Creating a Security Enforcement Environment for a Vehicular Platform"}, "parent": {"access": {"owned_by": {"user": "558474"}, "settings": {"accept_conditions_text": null, "allow_guest_requests": false, "allow_user_requests": false, "secret_link_expiration": 0}}, "communities": {"default": "0eccb842-064f-4c42-959b-089eeeea06b1", "entries": [{"access": {"member_policy": "open", "members_visibility": "public", "record_submission_policy": "open", "review_policy": "open", "visibility": "public"}, "children": {"allow": false}, "created": "2023-05-29T13:31:15.623949+00:00", "custom_fields": {}, "deletion_status": {"is_deleted": false, "status": "P"}, "id": "0eccb842-064f-4c42-959b-089eeeea06b1", "links": {}, "metadata": {"curation_policy": "\u003cp\u003eThis project has received funding from the\u0026nbsp;European Union\u0026rsquo;s Horizon Europe research and innovation programme under Grant Agreement No 10107059.\u0026nbsp;\u003c/p\u003e\r\n", "page": "\u003cp\u003eSecOPERA is an EU-funded Horizon Europe project that aims to provide a one-stop hub for complex open-source solutions and hardware delivering the means to analyse, assess, secure/harden and share open-source solutions as those are integrated into an overall complex product developed for a networked connected environment.\u003c/p\u003e\r\n\r\n\u003cp\u003ehttps://secopera.eu\u003c/p\u003e", "title": "SecOPERA - Secure OPen source softwarE and hardwaRe Adaptable framework"}, "revision_id": 0, "slug": "secopera", "updated": "2023-05-30T12:33:32.785637+00:00"}, {"access": {"member_policy": "open", "members_visibility": "restricted", "record_submission_policy": "open", "review_policy": "closed", "visibility": "public"}, "children": {"allow": true}, "created": "2022-11-23T15:53:29.436323+00:00", "custom_fields": {}, "deletion_status": {"is_deleted": false, "status": "P"}, "id": "f0a8b890-f97a-4eb2-9eac-8b8a712d3a6c", "links": {}, "metadata": {"curation_policy": "\u003ch2\u003eCuration policy\u003c/h2\u003e\n\u003cp\u003eThe EU Open Research Repository serves as a repository for research outputs (data, software, posters, presentations, publications, etc) which have been funded under an EU research funding programme such as Horizon Europe, Euratom or earlier Framework Programmes.\u003c/p\u003e\n\u003cp\u003eThe community is managed by CERN on behalf of the European Commission.\u0026nbsp;\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://about.zenodo.org/policies/\"\u003eZenodo\u0026rsquo;s general policies\u003c/a\u003e and \u003ca href=\"https://about.zenodo.org/terms/\"\u003eTerms of Use\u003c/a\u003e apply to all content.\u003c/p\u003e\n\u003ch3\u003eScope\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository accepts all digital research objects which is a research output stemming from one of EU\u0026rsquo;s research and innovation funding programmes. The funding programmes currently include:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eHorizon Europe (including ERC, MSCA), earlier Framework Programmes (eg Horizon 2020) as well as Euratom.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eIn line with the principle as open as possible, as closed as necessary both public and restricted content is accepted. See note on how \u003ca href=\"https://about.zenodo.org/infrastructure/\"\u003eZenodo handles restricted content\u003c/a\u003e.\u003c/p\u003e\n\u003ch3\u003eContent submission\u003c/h3\u003e\n\u003cp\u003eEU programme beneficiaries are eligible to submit content to the community. The community supports three types of content submissions:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eSubmission via an EU Project Community (through user interface or programmatic APIs).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSubmission directly to the EU Open Research Repository.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAutomated harvesting from existing Zenodo content.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProject community (preferred)\u003c/h4\u003e\n\u003cp\u003eA representative of an EU project may request an EU Project Community and invite other project participants as members of the community. The project community is linked to one or more European Commission grants. All records in the project community are automatically integrated into the EU Open Research Repository immediately upon acceptance into the project community.\u0026nbsp;\u003c/p\u003e\n\u003ch4\u003eDirect submission\u003c/h4\u003e\n\u003cp\u003eAny user may submit a record directly to the EU Open Research Repository. The submission will be moderated by Zenodo staff for compliance with the minimal required metadata requirements and its correctness.\u003c/p\u003e\n\u003ch4\u003eAutomated harvesting\u003c/h4\u003e\n\u003cp\u003eRecords found among Zenodo\u0026rsquo;s existing content will on a regular basis automatically be integrated if they are found to comply with the requirements. The submissions through this method are integrated into the EU Open Research Repository with delay in a fully automated way.\u003c/p\u003e\n\u003ch3\u003eDescriptive information\u003c/h3\u003e\n\u003ch4\u003eMinimal metadata requirements\u003c/h4\u003e\n\u003cp\u003eRecords in the EU Open Research Repository are required to comply with the following minimal metadata requirements:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eVisibility: Both public and restricted (with or without embargo and/or access request)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eResource types: All resource types.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLicenses: Public and embargoed records MUST specify a license.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFunding information: Records MUST specify at least one grant from the European Commission.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCreators: Creators SHOULD be identified with a persistent identifier (e.g. ORCID, GND, \u0026hellip;), and affiliations SHOULD be identified with a persistent identifier (e.g. ROR, ISNI, \u0026hellip;)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSubjects: Records SHOULD specify one or more fields of science from the \u003ca href=\"https://op.europa.eu/en/web/eu-vocabularies/euroscivoc\"\u003eEuropean Science Vocabulary\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eReview \u0026amp; moderation\u003c/h3\u003e\n\u003cp\u003eAll submissions will undergo automated curation checks for compliance with the policy. Submissions through project communities are reviewed by the project community. Submission directly to the EU Open Research Repository is reviewed by Zenodo staff.\u003c/p\u003e\n\u003cp\u003eCommunity curators may at any point edit metadata of the records in the community without notice through human or automated processing. The curators may at their sole discretion remove records from the community that are deemed not to comply with the content and curation policy or which are deemed of insufficient quality.\u003c/p\u003e\n\u003ch3\u003eUpdates\u003c/h3\u003e\n\u003cp\u003eThe content and curation policy is subject to change by the community owner at any time and without notice, other than through updating this page.\u003c/p\u003e", "description": "Open repository for EU-funded research outputs from Horizon Europe, Euratom, and earlier Framework Programmes.", "funding": [{"funder": {"id": "00k4n6c32"}}], "organizations": [{"id": "00k4n6c32"}], "page": "\u003ch2\u003eAbout\u003c/h2\u003e\n\u003cp\u003eThe EU Open Research Repository is a Zenodo-community dedicated to fostering open science and enhancing the visibility and accessibility of research outputs funded by the European Union. The community is managed by CERN on behalf of the European Commission.\u003c/p\u003e\n\u003ch3\u003eMission\u003c/h3\u003e\n\u003cp\u003eThe mission of the repository is to support the implementation of the EU\u0027s open science policy, providing a trusted and comprehensive space for researchers to share their research outputs such as data, software, reports, presentations, posters and more. The EU Open Research Repository simplifies the process of complying with open science requirements, ensuring that research outputs from Horizon Europe, Euratom, and earlier Framework Programmes are freely accessible, thereby accelerating scientific discovery and innovation.\u003c/p\u003e\n\u003ch3\u003eEU Open Research Repository vs Open Research Europe (ORE)\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository serves as a complementary platform to the \u003ca href=\"https://open-research-europe.ec.europa.eu/\"\u003eOpen Research Europe\u003c/a\u003e (ORE) publishing platform. Open Research Europe focuses on providing a publishing venue for peer-reviewed articles, ensuring that research meets rigorous academic standards. The EU Open Research Repository provides a space for all the other research outputs including data sets, software, posters, and presentations that are out of scope for ORE. This holistic approach enables researchers to not only publish their findings but also share the underlying data and materials that support their work, fostering transparency and reproducibility in the scientific process.\u0026nbsp;\u003c/p\u003e\n\u003ch3\u003eFunding\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository is funded by the European Union under grant agreement no. \u003ca href=\"https://cordis.europa.eu/project/id/101122956\"\u003e101122956\u003c/a\u003e(HORIZON-ZEN). For more information about the project see \u003ca href=\"https://about.zenodo.org/projects/horizon-zen/\"\u003ehttps://about.zenodo.org/projects/horizon-zen/.\u003c/a\u003e\u003c/p\u003e", "title": "EU Open Research Repository", "type": {"id": "organization"}, "website": "https://research-and-innovation.ec.europa.eu"}, "revision_id": 20, "slug": "eu", "theme": {"brand": "horizon", "enabled": true, "style": {"font": {"family": "Arial, sans-serif", "size": "16px", "weight": 600}, "mainHeaderBackgroundColor": "#FFFFFF", "primaryColor": "#004494", "primaryTextColor": "#FFFFFF", "secondaryColor": "#FFD617", "secondaryTextColor": "#000000", "tertiaryColor": "#e3eefd", "tertiaryTextColor": "#1c5694"}}, "updated": "2024-10-18T07:28:14.565467+00:00"}], "ids": ["0eccb842-064f-4c42-959b-089eeeea06b1", "f0a8b890-f97a-4eb2-9eac-8b8a712d3a6c"]}, "id": "10282179", "pids": {"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282179", "provider": "datacite"}}}, "pids": {"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282180", "provider": "datacite"}, "oai": {"identifier": "oai:zenodo.org:10282180", "provider": "oai"}}, "revision_id": 8, "stats": {"all_versions": {"data_volume": 33431820.0, "downloads": 60, "unique_downloads": 49, "unique_views": 62, "views": 68}, "this_version": {"data_volume": 33431820.0, "downloads": 60, "unique_downloads": 49, "unique_views": 62, "views": 68}}, "status": "published", "ui": {"access_status": {"description_l10n": "The record and files are publicly accessible.", "embargo_date_l10n": null, "icon": "unlock", "id": "open", "message_class": "", "title_l10n": "Open"}, "additional_descriptions": [{"description": "\u003cp\u003eThis work is supported by the following European Union-funded projects: a) JCOP (Agreement No.: INEA/CE- F/ICT/A2020/2373266), b) CyberSecPro (Agreement No.: 101083594), c) SecOPERA (Agreement No.: 101070599) and d) CyberSecDome (Agreement No.: 101120779).\u003c/p\u003e", "lang": {"id": "eng", "title_l10n": "English"}, "type": {"id": "notes", "title_l10n": "Notes"}}], "conference": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}, "created_date_l10n_long": "December 7, 2023", "creators": {"affiliations": [[1, "AEGIS IT RESEARCH GmbH, Braunschweig, Germany", null], [2, "Technical University of Munich, Munich, Germany", null], [3, "Technical University of Braunschweig, Braunschweig, Germany", null]], "creators": [{"affiliations": [[1, "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"]], "person_or_org": {"family_name": "Tsantekidis", "given_name": "Marinos", "name": "Tsantekidis, Marinos", "type": "personal"}}, {"affiliations": [[2, "Technical University of Munich, Munich, Germany"]], "person_or_org": {"family_name": "Abdelghani", "given_name": "Souleima", "name": "Abdelghani, Souleima", "type": "personal"}}, {"affiliations": [[2, "Technical University of Munich, Munich, Germany"]], "person_or_org": {"family_name": "Hamad", "given_name": "Mohammad", "name": "Hamad, Mohammad", "type": "personal"}}, {"affiliations": [[3, "Technical University of Braunschweig, Braunschweig, Germany"]], "person_or_org": {"family_name": "Prevelakis", "given_name": "Vassilis", "name": "Prevelakis, Vassilis", "type": "personal"}}]}, "custom_fields": {"meeting:meeting": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}}, "description_stripped": "The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism\u0027s effectiveness and highlight its potential to enhance security while minimizing the impact on performance.", "funding": [{"award": {"acronym": "SecOPERA", "id": "00k4n6c32::101070599", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101070599", "scheme": "url"}], "number": "101070599", "program": "HORIZON.2.3", "title_l10n": "Secure OPen source softwarE and hardwaRe Adaptable framework"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"acronym": "CyberSecDome", "id": "00k4n6c32::101120779", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101120779", "scheme": "url"}], "number": "101120779", "program": "HORIZON.2.3", "title_l10n": "An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "INEA/CEF/ICT/A2020/2373266", "title_l10n": "Joint Cybersecurity Operations Platform (JCOP)"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "101083594", "title_l10n": "Cyber Security Competence Development (CyberSecPro)"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}], "is_draft": false, "languages": [{"id": "eng", "title_l10n": "English"}], "publication_date_l10n_long": "December 7, 2023", "publication_date_l10n_medium": "Dec 7, 2023", "resource_type": {"id": "publication-conferencepaper", "title_l10n": "Conference paper"}, "rights": [{"description_l10n": "The Creative Commons Attribution license allows re-distribution and re-use of a licensed work on the condition that the creator is appropriately credited.", "icon": "cc-by-icon", "id": "cc-by-4.0", "props": {"scheme": "spdx", "url": "https://creativecommons.org/licenses/by/4.0/legalcode"}, "title_l10n": "Creative Commons Attribution 4.0 International"}], "updated_date_l10n_long": "August 27, 2024", "version": "v1"}, "updated": "2024-08-27T15:30:21.257152+00:00", "versions": {"index": 1, "is_latest": true}}' data-preview='false'> <div class="rel-p-1"></div> <div class="ui fluid placeholder rel-mr-1 rel-ml-1"></div> <div class="header"> <div class="line"></div> <div class="line"></div> <div class="line"></div> </div> </div> </div> </div> </div><div class="sidebar-container"> <h2 class="ui small top attached header">External resources</h2> <div id="external-resource" aria-label="External resources" class="ui bottom attached segment rdm-sidebar external resource"> <h3 class="ui small header">Indexed in</h3> <ul class="ui relaxed list no-bullet"> <li class="item flex align-items-center"> <img class="ui image" src="/static/images/openaire.svg" alt="" width="32"> <div class="content"> <a class="header" href="https://explore.openaire.eu/search/publication?pid=10.5281/zenodo.10282180" target="_blank" rel="noreferrer" >OpenAIRE </a> </div> </li></ul></div> </div><div id="sidebar-communities-manage" data-user-communities-memberships='{}' data-record-community-endpoint="https://zenodo.org/api/records/10282180/communities" data-record-community-search-endpoint="https://zenodo.org/api/records/10282180/communities-suggestions" data-record-user-community-search-endpoint="" data-can-manage-record='false' data-pending-communities-search-config='{"aggs": [{"aggName": "type", "field": "type", "title": "Type"}, {"aggName": "status", "field": "status", "title": "Status"}], "appId": "InvenioAppRdm.RecordRequests", "defaultSortingOnEmptyQueryString": [{"sortBy": "newest"}], "initialQueryState": {"filters": [], "hiddenParams": [["expand", "1"], ["is_open", "true"], ["type", "community-inclusion"], ["type", "community-submission"]], "layout": "list", "page": 1, "size": 10, "sortBy": "bestmatch"}, "layoutOptions": {"gridView": false, "listView": true}, "paginationOptions": {"defaultValue": 10, "maxTotalResults": 10000, "resultsPerPage": [{"text": "10", "value": 10}, {"text": "20", "value": 20}, {"text": "50", "value": 50}]}, "searchApi": {"axios": {"headers": {"Accept": "application/json"}, "url": "https://zenodo.org/api/records/10282180/requests", "withCredentials": true}, "invenio": {"requestSerializer": "InvenioRecordsResourcesRequestSerializer"}}, "sortOptions": [{"sortBy": "bestmatch", "text": "Best match"}, {"sortBy": "newest", "text": "Newest"}, {"sortBy": "oldest", "text": "Oldest"}], "sortOrderDisabled": true}' data-record-community-search-config='{"aggs": [{"aggName": "type", "field": "type", "title": "Type"}, {"aggName": "funder", "field": "metadata.funding.funder", "title": "Funders"}, {"aggName": "organization", "field": "metadata.organizations", "title": "Organizations"}], "appId": "InvenioAppRdm.RecordCommunitiesSuggestions", "defaultSortingOnEmptyQueryString": [{"sortBy": "newest"}], "initialQueryState": {"filters": [], "hiddenParams": null, "layout": "list", "page": 1, "size": 10, "sortBy": "bestmatch"}, "layoutOptions": {"gridView": false, "listView": true}, "paginationOptions": {"defaultValue": 10, "maxTotalResults": 10000, "resultsPerPage": [{"text": "10", "value": 10}, {"text": "20", "value": 20}]}, "searchApi": {"axios": {"headers": {"Accept": "application/vnd.inveniordm.v1+json"}, "url": "https://zenodo.org/api/records/10282180/communities-suggestions", "withCredentials": true}, "invenio": {"requestSerializer": "InvenioRecordsResourcesRequestSerializer"}}, "sortOptions": [{"sortBy": "bestmatch", "text": "Best match"}, {"sortBy": "newest", "text": "Newest"}, {"sortBy": "oldest", "text": "Oldest"}], "sortOrderDisabled": true}' data-record-user-community-search-config='{"aggs": [{"aggName": "type", "field": "type", "title": "Type"}, {"aggName": "funder", "field": "metadata.funding.funder", "title": "Funders"}, {"aggName": "organization", "field": "metadata.organizations", "title": "Organizations"}], "appId": "InvenioAppRdm.RecordUserCommunitiesSuggestions", "defaultSortingOnEmptyQueryString": [{"sortBy": "newest"}], "initialQueryState": {"filters": [], "hiddenParams": [["membership", "true"]], "layout": "list", "page": 1, "size": 10, "sortBy": "bestmatch"}, "layoutOptions": {"gridView": false, "listView": true}, "paginationOptions": {"defaultValue": 10, "maxTotalResults": 10000, "resultsPerPage": [{"text": "10", "value": 10}, {"text": "20", "value": 20}]}, "searchApi": {"axios": {"headers": {"Accept": "application/vnd.inveniordm.v1+json"}, "url": "https://zenodo.org/api/records/10282180/communities-suggestions", "withCredentials": true}, "invenio": {"requestSerializer": "InvenioRecordsResourcesRequestSerializer"}}, "sortOptions": [{"sortBy": "bestmatch", "text": "Best match"}, {"sortBy": "newest", "text": "Newest"}, {"sortBy": "oldest", "text": "Oldest"}], "sortOrderDisabled": true}' data-permissions='{"can_edit": false, "can_manage": false, "can_media_read_files": true, "can_moderate": false, "can_new_version": false, "can_read_files": true, "can_review": false, "can_update_draft": false, "can_view": false}' class="sidebar-container" > <h2 class="ui medium top attached header">Communities</h2> <div class="ui segment bottom attached rdm-sidebar"> <div class="ui fluid placeholder"> <div class="image header"> <div class="line"></div> <div class="line"></div> </div> <div class="image header"> <div class="line"></div> <div class="line"></div> </div> <div class="image header"> <div class="line"></div> <div class="line"></div> </div> </div> </div> </div> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Keywords and subjects</h2> <div id="keywords-and-subjects" aria-label="Keywords and subjects" class="ui segment bottom attached rdm-sidebar"> <h3 class="hidden">Keywords</h3> <ul class="ui horizontal list no-bullets subjects"> <li class="item"> <a href="/search?q=metadata.subjects.subject%3A%22security%22" class="subject" title="Search results for security" > security </a> </li> <li class="item"> <a href="/search?q=metadata.subjects.subject%3A%22Software+Intrusion+Detection%22" class="subject" title="Search results for Software Intrusion Detection" > Software Intrusion Detection </a> </li> </ul> </div> </div> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Details</h2> <div id="record-details" class="ui segment bottom attached rdm-sidebar"> <dl class="details-list"> <dt class="ui tiny header">DOI <dd> <span class="get-badge" data-toggle="tooltip" data-placement="bottom" style="cursor: pointer;" title="Get the DOI badge!"> <img id='record-doi-badge' data-target="[data-modal='10.5281/zenodo.10282180']" src="/badge/DOI/10.5281/zenodo.10282180.svg" alt="10.5281/zenodo.10282180" /> </span> <div id="doi-modal" class="ui modal fade badge-modal" data-modal="10.5281/zenodo.10282180"> <div class="header">DOI Badge</div> <div class="content"> <h4> <small>DOI</small> </h4> <h4> <pre>10.5281/zenodo.10282180</pre> </h4> <h3 class="ui small header"> Markdown </h3> <div class="ui message code"> <pre>[![DOI](https://zenodo.org/badge/DOI/10.5281/zenodo.10282180.svg)](https://doi.org/10.5281/zenodo.10282180)</pre> </div> <h3 class="ui small header"> reStructuredText </h3> <div class="ui message code"> <pre>.. image:: https://zenodo.org/badge/DOI/10.5281/zenodo.10282180.svg :target: https://doi.org/10.5281/zenodo.10282180</pre> </div> <h3 class="ui small header"> HTML </h3> <div class="ui message code"> <pre><a href="https://doi.org/10.5281/zenodo.10282180"><img src="https://zenodo.org/badge/DOI/10.5281/zenodo.10282180.svg" alt="DOI"></a></pre> </div> <h3 class="ui small header"> Image URL </h3> <div class="ui message code"> <pre>https://zenodo.org/badge/DOI/10.5281/zenodo.10282180.svg</pre> </div> <h3 class="ui small header"> Target URL </h3> <div class="ui message code"> <pre>https://doi.org/10.5281/zenodo.10282180</pre> </div> </div> </div> </dd> <dt class="ui tiny header">Resource type</dt> <dd>Conference paper</dd> <dt class="ui tiny header">Publisher</dt> <dd>IEEE</dd> <dt class="ui tiny header">Conference</dt> <dd> <dd> <a href="https://cscn2023.ieee-cscn.org"><i class="fa fa-external-link"></i> IEEE Conference on Standards for Communications and Networking (CSCN2023) </a>, Munich, Germany, 6–8 November 2023 </dd> </dd> <dt class="ui tiny header">Languages</dt> <dd> English </dd> </dl> </div> </div> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Rights</h2> <div id="licenses" class="ui segment bottom attached rdm-sidebar"> <ul class="details-list m-0 p-0"> <li id="license-cc-by-4.0-1" class="has-popup"> <div id="title-cc-by-4.0-1" class="license clickable" tabindex="0" aria-haspopup="dialog" aria-expanded="false" role="button" aria-label="Creative Commons Attribution 4.0 International" > <span class="icon-wrap"> <img class="icon" src="/static/icons/licenses/cc-by-icon.svg" alt="cc-by-4.0 icon"/> </span> <span class="title-text"> Creative Commons Attribution 4.0 International </span> </div> <div id="description-cc-by-4.0-1" class="licenses-description ui flowing popup transition hidden" role="dialog" aria-labelledby="title-cc-by-4.0-1" > <i role="button" tabindex="0" class="close icon text-muted" aria-label="Close"></i> <div id="license-description-1" class="description"> <span class="text-muted"> The Creative Commons Attribution license allows re-distribution and re-use of a licensed work on the condition that the creator is appropriately credited. </span> <a class="license-link" href="https://creativecommons.org/licenses/by/4.0/legalcode" target="_blank" title="Opens in new tab">Read more</a> </div> </div> </li> </ul> </div> </div> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Citation</h2> <div id="citation" class="ui segment bottom attached rdm-sidebar"> <div id="recordCitation" data-record='{"access": {"embargo": {"active": false, "reason": null}, "files": "public", "record": "public", "status": "open"}, "created": "2023-12-07T11:25:53.525993+00:00", "custom_fields": {"meeting:meeting": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}}, "deletion_status": {"is_deleted": false, "status": "P"}, "expanded": {"parent": {"access": {"owned_by": {"active": null, "blocked_at": null, "confirmed_at": null, "email": "", "id": "558474", "is_current_user": false, "links": {"avatar": "https://zenodo.org/api/users/558474/avatar.svg", "records_html": "https://zenodo.org/search/records?q=parent.access.owned_by.user:558474", "self": "https://zenodo.org/api/users/558474"}, "profile": {"affiliations": "", "full_name": ""}, "username": "SecOPERA", "verified_at": null}}, "communities": {"default": {"access": {"review_policy": "open", "visibility": "public"}, "id": "0eccb842-064f-4c42-959b-089eeeea06b1", "links": {"logo": "https://zenodo.org/api/communities/0eccb842-064f-4c42-959b-089eeeea06b1/logo"}, "metadata": {"description": null, "title": "SecOPERA - Secure OPen source softwarE and hardwaRe Adaptable framework", "type": null}, "slug": "secopera"}}}}, "files": {"count": 1, "enabled": true, "entries": {"Tsantekidis_et_al_CSCN2023.pdf": {"access": {"hidden": false}, "checksum": "md5:5b2ed3973a903c36672e1a3f09c575c2", "ext": "pdf", "id": "0381696e-abb3-4106-a70c-654ebca2dbfe", "key": "Tsantekidis_et_al_CSCN2023.pdf", "links": {"content": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf/content", "iiif_api": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/full/0/default.png", "iiif_base": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf", "iiif_canvas": "https://zenodo.org/api/iiif/record:10282180/canvas/Tsantekidis_et_al_CSCN2023.pdf", "iiif_info": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/info.json", "self": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf"}, "metadata": null, "mimetype": "application/pdf", "size": 557197, "storage_class": "L"}}, "order": [], "total_bytes": 557197}, "id": "10282180", "is_draft": false, "is_published": true, "links": {"access": "https://zenodo.org/api/records/10282180/access", "access_grants": "https://zenodo.org/api/records/10282180/access/grants", "access_links": "https://zenodo.org/api/records/10282180/access/links", "access_request": "https://zenodo.org/api/records/10282180/access/request", "access_users": "https://zenodo.org/api/records/10282180/access/users", "archive": "https://zenodo.org/api/records/10282180/files-archive", "archive_media": "https://zenodo.org/api/records/10282180/media-files-archive", "communities": "https://zenodo.org/api/records/10282180/communities", "communities-suggestions": "https://zenodo.org/api/records/10282180/communities-suggestions", "doi": "https://doi.org/10.5281/zenodo.10282180", "draft": "https://zenodo.org/api/records/10282180/draft", "files": "https://zenodo.org/api/records/10282180/files", "latest": "https://zenodo.org/api/records/10282180/versions/latest", "latest_html": "https://zenodo.org/records/10282180/latest", "media_files": "https://zenodo.org/api/records/10282180/media-files", "parent": "https://zenodo.org/api/records/10282179", "parent_doi": "https://doi.org/10.5281/zenodo.10282179", "parent_doi_html": "https://zenodo.org/doi/10.5281/zenodo.10282179", "parent_html": "https://zenodo.org/records/10282179", "requests": "https://zenodo.org/api/records/10282180/requests", "reserve_doi": "https://zenodo.org/api/records/10282180/draft/pids/doi", "self": "https://zenodo.org/api/records/10282180", "self_doi": "https://doi.org/10.5281/zenodo.10282180", "self_doi_html": "https://zenodo.org/doi/10.5281/zenodo.10282180", "self_html": "https://zenodo.org/records/10282180", "self_iiif_manifest": "https://zenodo.org/api/iiif/record:10282180/manifest", "self_iiif_sequence": "https://zenodo.org/api/iiif/record:10282180/sequence/default", "thumbnails": {"10": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^10,/0/default.jpg", "100": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^100,/0/default.jpg", "1200": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^1200,/0/default.jpg", "250": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^250,/0/default.jpg", "50": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^50,/0/default.jpg", "750": "https://zenodo.org/api/iiif/record:10282180:Tsantekidis_et_al_CSCN2023.pdf/full/^750,/0/default.jpg"}, "versions": "https://zenodo.org/api/records/10282180/versions"}, "media_files": {"count": 1, "enabled": true, "entries": {"Tsantekidis_et_al_CSCN2023.pdf.ptif": {"access": {"hidden": true}, "ext": "ptif", "id": "969c5c5e-852d-4b15-9b72-7a13c4a2c804", "key": "Tsantekidis_et_al_CSCN2023.pdf.ptif", "links": {"content": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf.ptif/content", "self": "https://zenodo.org/api/records/10282180/files/Tsantekidis_et_al_CSCN2023.pdf.ptif"}, "metadata": null, "mimetype": "application/octet-stream", "processor": {"source_file_id": "0381696e-abb3-4106-a70c-654ebca2dbfe", "status": "finished", "type": "image-tiles"}, "size": 0, "storage_class": "L"}}, "order": [], "total_bytes": 0}, "metadata": {"additional_descriptions": [{"description": "\u003cp\u003eThis work is supported by the following European Union-funded projects: a) JCOP (Agreement No.: INEA/CE- F/ICT/A2020/2373266), b) CyberSecPro (Agreement No.: 101083594), c) SecOPERA (Agreement No.: 101070599) and d) CyberSecDome (Agreement No.: 101120779).\u003c/p\u003e", "lang": {"id": "eng", "title": {"en": "English"}}, "type": {"id": "notes", "title": {"de": "Anmerkungen", "en": "Notes"}}}], "creators": [{"affiliations": [{"name": "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"}], "person_or_org": {"family_name": "Tsantekidis", "given_name": "Marinos", "name": "Tsantekidis, Marinos", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Munich, Munich, Germany"}], "person_or_org": {"family_name": "Abdelghani", "given_name": "Souleima", "name": "Abdelghani, Souleima", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Munich, Munich, Germany"}], "person_or_org": {"family_name": "Hamad", "given_name": "Mohammad", "name": "Hamad, Mohammad", "type": "personal"}}, {"affiliations": [{"name": "Technical University of Braunschweig, Braunschweig, Germany"}], "person_or_org": {"family_name": "Prevelakis", "given_name": "Vassilis", "name": "Prevelakis, Vassilis", "type": "personal"}}], "description": "\u003cp\u003eThe ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism\u0027s effectiveness and highlight its potential to enhance security while minimizing the impact on performance.\u003c/p\u003e", "funding": [{"award": {"acronym": "SecOPERA", "id": "00k4n6c32::101070599", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101070599", "scheme": "url"}], "number": "101070599", "program": "HORIZON.2.3", "title": {"en": "Secure OPen source softwarE and hardwaRe Adaptable framework"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"acronym": "CyberSecDome", "id": "00k4n6c32::101120779", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101120779", "scheme": "url"}], "number": "101120779", "program": "HORIZON.2.3", "title": {"en": "An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "INEA/CEF/ICT/A2020/2373266", "title": {"en": "Joint Cybersecurity Operations Platform (JCOP)"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "101083594", "title": {"en": "Cyber Security Competence Development (CyberSecPro)"}}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}], "identifiers": [{"identifier": "10.1109/CSCN60443.2023.10453176", "scheme": "doi"}], "languages": [{"id": "eng", "title": {"en": "English"}}], "publication_date": "2023-12-07", "publisher": "IEEE", "resource_type": {"id": "publication-conferencepaper", "title": {"de": "Konferenzbeitrag", "en": "Conference paper"}}, "rights": [{"description": {"en": "The Creative Commons Attribution license allows re-distribution and re-use of a licensed work on the condition that the creator is appropriately credited."}, "icon": "cc-by-icon", "id": "cc-by-4.0", "props": {"scheme": "spdx", "url": "https://creativecommons.org/licenses/by/4.0/legalcode"}, "title": {"en": "Creative Commons Attribution 4.0 International"}}], "subjects": [{"subject": "security"}, {"subject": "Software Intrusion Detection"}], "title": "Creating a Security Enforcement Environment for a Vehicular Platform"}, "parent": {"access": {"owned_by": {"user": "558474"}, "settings": {"accept_conditions_text": null, "allow_guest_requests": false, "allow_user_requests": false, "secret_link_expiration": 0}}, "communities": {"default": "0eccb842-064f-4c42-959b-089eeeea06b1", "entries": [{"access": {"member_policy": "open", "members_visibility": "public", "record_submission_policy": "open", "review_policy": "open", "visibility": "public"}, "children": {"allow": false}, "created": "2023-05-29T13:31:15.623949+00:00", "custom_fields": {}, "deletion_status": {"is_deleted": false, "status": "P"}, "id": "0eccb842-064f-4c42-959b-089eeeea06b1", "links": {}, "metadata": {"curation_policy": "\u003cp\u003eThis project has received funding from the\u0026nbsp;European Union\u0026rsquo;s Horizon Europe research and innovation programme under Grant Agreement No 10107059.\u0026nbsp;\u003c/p\u003e\r\n", "page": "\u003cp\u003eSecOPERA is an EU-funded Horizon Europe project that aims to provide a one-stop hub for complex open-source solutions and hardware delivering the means to analyse, assess, secure/harden and share open-source solutions as those are integrated into an overall complex product developed for a networked connected environment.\u003c/p\u003e\r\n\r\n\u003cp\u003ehttps://secopera.eu\u003c/p\u003e", "title": "SecOPERA - Secure OPen source softwarE and hardwaRe Adaptable framework"}, "revision_id": 0, "slug": "secopera", "updated": "2023-05-30T12:33:32.785637+00:00"}, {"access": {"member_policy": "open", "members_visibility": "restricted", "record_submission_policy": "open", "review_policy": "closed", "visibility": "public"}, "children": {"allow": true}, "created": "2022-11-23T15:53:29.436323+00:00", "custom_fields": {}, "deletion_status": {"is_deleted": false, "status": "P"}, "id": "f0a8b890-f97a-4eb2-9eac-8b8a712d3a6c", "links": {}, "metadata": {"curation_policy": "\u003ch2\u003eCuration policy\u003c/h2\u003e\n\u003cp\u003eThe EU Open Research Repository serves as a repository for research outputs (data, software, posters, presentations, publications, etc) which have been funded under an EU research funding programme such as Horizon Europe, Euratom or earlier Framework Programmes.\u003c/p\u003e\n\u003cp\u003eThe community is managed by CERN on behalf of the European Commission.\u0026nbsp;\u003c/p\u003e\n\u003cp\u003e\u003ca href=\"https://about.zenodo.org/policies/\"\u003eZenodo\u0026rsquo;s general policies\u003c/a\u003e and \u003ca href=\"https://about.zenodo.org/terms/\"\u003eTerms of Use\u003c/a\u003e apply to all content.\u003c/p\u003e\n\u003ch3\u003eScope\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository accepts all digital research objects which is a research output stemming from one of EU\u0026rsquo;s research and innovation funding programmes. The funding programmes currently include:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eHorizon Europe (including ERC, MSCA), earlier Framework Programmes (eg Horizon 2020) as well as Euratom.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003cp\u003eIn line with the principle as open as possible, as closed as necessary both public and restricted content is accepted. See note on how \u003ca href=\"https://about.zenodo.org/infrastructure/\"\u003eZenodo handles restricted content\u003c/a\u003e.\u003c/p\u003e\n\u003ch3\u003eContent submission\u003c/h3\u003e\n\u003cp\u003eEU programme beneficiaries are eligible to submit content to the community. The community supports three types of content submissions:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eSubmission via an EU Project Community (through user interface or programmatic APIs).\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSubmission directly to the EU Open Research Repository.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eAutomated harvesting from existing Zenodo content.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch4\u003eProject community (preferred)\u003c/h4\u003e\n\u003cp\u003eA representative of an EU project may request an EU Project Community and invite other project participants as members of the community. The project community is linked to one or more European Commission grants. All records in the project community are automatically integrated into the EU Open Research Repository immediately upon acceptance into the project community.\u0026nbsp;\u003c/p\u003e\n\u003ch4\u003eDirect submission\u003c/h4\u003e\n\u003cp\u003eAny user may submit a record directly to the EU Open Research Repository. The submission will be moderated by Zenodo staff for compliance with the minimal required metadata requirements and its correctness.\u003c/p\u003e\n\u003ch4\u003eAutomated harvesting\u003c/h4\u003e\n\u003cp\u003eRecords found among Zenodo\u0026rsquo;s existing content will on a regular basis automatically be integrated if they are found to comply with the requirements. The submissions through this method are integrated into the EU Open Research Repository with delay in a fully automated way.\u003c/p\u003e\n\u003ch3\u003eDescriptive information\u003c/h3\u003e\n\u003ch4\u003eMinimal metadata requirements\u003c/h4\u003e\n\u003cp\u003eRecords in the EU Open Research Repository are required to comply with the following minimal metadata requirements:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003e\n\u003cp\u003eVisibility: Both public and restricted (with or without embargo and/or access request)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eResource types: All resource types.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eLicenses: Public and embargoed records MUST specify a license.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eFunding information: Records MUST specify at least one grant from the European Commission.\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eCreators: Creators SHOULD be identified with a persistent identifier (e.g. ORCID, GND, \u0026hellip;), and affiliations SHOULD be identified with a persistent identifier (e.g. ROR, ISNI, \u0026hellip;)\u003c/p\u003e\n\u003c/li\u003e\n\u003cli\u003e\n\u003cp\u003eSubjects: Records SHOULD specify one or more fields of science from the \u003ca href=\"https://op.europa.eu/en/web/eu-vocabularies/euroscivoc\"\u003eEuropean Science Vocabulary\u003c/a\u003e.\u003c/p\u003e\n\u003c/li\u003e\n\u003c/ul\u003e\n\u003ch3\u003eReview \u0026amp; moderation\u003c/h3\u003e\n\u003cp\u003eAll submissions will undergo automated curation checks for compliance with the policy. Submissions through project communities are reviewed by the project community. Submission directly to the EU Open Research Repository is reviewed by Zenodo staff.\u003c/p\u003e\n\u003cp\u003eCommunity curators may at any point edit metadata of the records in the community without notice through human or automated processing. The curators may at their sole discretion remove records from the community that are deemed not to comply with the content and curation policy or which are deemed of insufficient quality.\u003c/p\u003e\n\u003ch3\u003eUpdates\u003c/h3\u003e\n\u003cp\u003eThe content and curation policy is subject to change by the community owner at any time and without notice, other than through updating this page.\u003c/p\u003e", "description": "Open repository for EU-funded research outputs from Horizon Europe, Euratom, and earlier Framework Programmes.", "funding": [{"funder": {"id": "00k4n6c32"}}], "organizations": [{"id": "00k4n6c32"}], "page": "\u003ch2\u003eAbout\u003c/h2\u003e\n\u003cp\u003eThe EU Open Research Repository is a Zenodo-community dedicated to fostering open science and enhancing the visibility and accessibility of research outputs funded by the European Union. The community is managed by CERN on behalf of the European Commission.\u003c/p\u003e\n\u003ch3\u003eMission\u003c/h3\u003e\n\u003cp\u003eThe mission of the repository is to support the implementation of the EU\u0027s open science policy, providing a trusted and comprehensive space for researchers to share their research outputs such as data, software, reports, presentations, posters and more. The EU Open Research Repository simplifies the process of complying with open science requirements, ensuring that research outputs from Horizon Europe, Euratom, and earlier Framework Programmes are freely accessible, thereby accelerating scientific discovery and innovation.\u003c/p\u003e\n\u003ch3\u003eEU Open Research Repository vs Open Research Europe (ORE)\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository serves as a complementary platform to the \u003ca href=\"https://open-research-europe.ec.europa.eu/\"\u003eOpen Research Europe\u003c/a\u003e (ORE) publishing platform. Open Research Europe focuses on providing a publishing venue for peer-reviewed articles, ensuring that research meets rigorous academic standards. The EU Open Research Repository provides a space for all the other research outputs including data sets, software, posters, and presentations that are out of scope for ORE. This holistic approach enables researchers to not only publish their findings but also share the underlying data and materials that support their work, fostering transparency and reproducibility in the scientific process.\u0026nbsp;\u003c/p\u003e\n\u003ch3\u003eFunding\u003c/h3\u003e\n\u003cp\u003eThe EU Open Research Repository is funded by the European Union under grant agreement no. \u003ca href=\"https://cordis.europa.eu/project/id/101122956\"\u003e101122956\u003c/a\u003e(HORIZON-ZEN). For more information about the project see \u003ca href=\"https://about.zenodo.org/projects/horizon-zen/\"\u003ehttps://about.zenodo.org/projects/horizon-zen/.\u003c/a\u003e\u003c/p\u003e", "title": "EU Open Research Repository", "type": {"id": "organization"}, "website": "https://research-and-innovation.ec.europa.eu"}, "revision_id": 20, "slug": "eu", "theme": {"brand": "horizon", "enabled": true, "style": {"font": {"family": "Arial, sans-serif", "size": "16px", "weight": 600}, "mainHeaderBackgroundColor": "#FFFFFF", "primaryColor": "#004494", "primaryTextColor": "#FFFFFF", "secondaryColor": "#FFD617", "secondaryTextColor": "#000000", "tertiaryColor": "#e3eefd", "tertiaryTextColor": "#1c5694"}}, "updated": "2024-10-18T07:28:14.565467+00:00"}], "ids": ["0eccb842-064f-4c42-959b-089eeeea06b1", "f0a8b890-f97a-4eb2-9eac-8b8a712d3a6c"]}, "id": "10282179", "pids": {"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282179", "provider": "datacite"}}}, "pids": {"doi": {"client": "datacite", "identifier": "10.5281/zenodo.10282180", "provider": "datacite"}, "oai": {"identifier": "oai:zenodo.org:10282180", "provider": "oai"}}, "revision_id": 8, "stats": {"all_versions": {"data_volume": 33431820.0, "downloads": 60, "unique_downloads": 49, "unique_views": 62, "views": 68}, "this_version": {"data_volume": 33431820.0, "downloads": 60, "unique_downloads": 49, "unique_views": 62, "views": 68}}, "status": "published", "ui": {"access_status": {"description_l10n": "The record and files are publicly accessible.", "embargo_date_l10n": null, "icon": "unlock", "id": "open", "message_class": "", "title_l10n": "Open"}, "additional_descriptions": [{"description": "\u003cp\u003eThis work is supported by the following European Union-funded projects: a) JCOP (Agreement No.: INEA/CE- F/ICT/A2020/2373266), b) CyberSecPro (Agreement No.: 101083594), c) SecOPERA (Agreement No.: 101070599) and d) CyberSecDome (Agreement No.: 101120779).\u003c/p\u003e", "lang": {"id": "eng", "title_l10n": "English"}, "type": {"id": "notes", "title_l10n": "Notes"}}], "conference": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}, "created_date_l10n_long": "December 7, 2023", "creators": {"affiliations": [[1, "AEGIS IT RESEARCH GmbH, Braunschweig, Germany", null], [2, "Technical University of Munich, Munich, Germany", null], [3, "Technical University of Braunschweig, Braunschweig, Germany", null]], "creators": [{"affiliations": [[1, "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"]], "person_or_org": {"family_name": "Tsantekidis", "given_name": "Marinos", "name": "Tsantekidis, Marinos", "type": "personal"}}, {"affiliations": [[2, "Technical University of Munich, Munich, Germany"]], "person_or_org": {"family_name": "Abdelghani", "given_name": "Souleima", "name": "Abdelghani, Souleima", "type": "personal"}}, {"affiliations": [[2, "Technical University of Munich, Munich, Germany"]], "person_or_org": {"family_name": "Hamad", "given_name": "Mohammad", "name": "Hamad, Mohammad", "type": "personal"}}, {"affiliations": [[3, "Technical University of Braunschweig, Braunschweig, Germany"]], "person_or_org": {"family_name": "Prevelakis", "given_name": "Vassilis", "name": "Prevelakis, Vassilis", "type": "personal"}}]}, "custom_fields": {"meeting:meeting": {"acronym": "CSCN2023", "dates": "6\u20138 November 2023", "place": "Munich, Germany", "title": "IEEE Conference on Standards for Communications and Networking", "url": "https://cscn2023.ieee-cscn.org"}}, "description_stripped": "The ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism\u0027s effectiveness and highlight its potential to enhance security while minimizing the impact on performance.", "funding": [{"award": {"acronym": "SecOPERA", "id": "00k4n6c32::101070599", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101070599", "scheme": "url"}], "number": "101070599", "program": "HORIZON.2.3", "title_l10n": "Secure OPen source softwarE and hardwaRe Adaptable framework"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"acronym": "CyberSecDome", "id": "00k4n6c32::101120779", "identifiers": [{"identifier": "https://cordis.europa.eu/projects/101120779", "scheme": "url"}], "number": "101120779", "program": "HORIZON.2.3", "title_l10n": "An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "INEA/CEF/ICT/A2020/2373266", "title_l10n": "Joint Cybersecurity Operations Platform (JCOP)"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}, {"award": {"number": "101083594", "title_l10n": "Cyber Security Competence Development (CyberSecPro)"}, "funder": {"id": "00k4n6c32", "name": "European Commission"}}], "is_draft": false, "languages": [{"id": "eng", "title_l10n": "English"}], "publication_date_l10n_long": "December 7, 2023", "publication_date_l10n_medium": "Dec 7, 2023", "resource_type": {"id": "publication-conferencepaper", "title_l10n": "Conference paper"}, "rights": [{"description_l10n": "The Creative Commons Attribution license allows re-distribution and re-use of a licensed work on the condition that the creator is appropriately credited.", "icon": "cc-by-icon", "id": "cc-by-4.0", "props": {"scheme": "spdx", "url": "https://creativecommons.org/licenses/by/4.0/legalcode"}, "title_l10n": "Creative Commons Attribution 4.0 International"}], "updated_date_l10n_long": "August 27, 2024", "version": "v1"}, "updated": "2024-08-27T15:30:21.257152+00:00", "versions": {"index": 1, "is_latest": true}}' data-styles='[["apa", "APA"], ["harvard-cite-them-right", "Harvard"], ["modern-language-association", "MLA"], ["vancouver", "Vancouver"], ["chicago-fullnote-bibliography", "Chicago"], ["ieee", "IEEE"]]' data-defaultstyle='"apa"' data-include-deleted='false'> </div> </div> </div> <div class="sidebar-container"> <h2 class="ui medium top attached header mt-0">Export</h2> <div id="export-record" class="ui segment bottom attached exports rdm-sidebar"> <div id="recordExportDownload" data-formats='[{"export_url": "/records/10282180/export/json", "name": "JSON"}, {"export_url": "/records/10282180/export/json-ld", "name": "JSON-LD"}, {"export_url": "/records/10282180/export/csl", "name": "CSL"}, {"export_url": "/records/10282180/export/datacite-json", "name": "DataCite JSON"}, {"export_url": "/records/10282180/export/datacite-xml", "name": "DataCite XML"}, {"export_url": "/records/10282180/export/dublincore", "name": "Dublin Core XML"}, {"export_url": "/records/10282180/export/marcxml", "name": "MARCXML"}, {"export_url": "/records/10282180/export/bibtex", "name": "BibTeX"}, {"export_url": "/records/10282180/export/geojson", "name": "GeoJSON"}, {"export_url": "/records/10282180/export/dcat-ap", "name": "DCAT"}, {"export_url": "/records/10282180/export/codemeta", "name": "Codemeta"}, {"export_url": "/records/10282180/export/cff", "name": "Citation File Format"}]'></div> </div> </div> <section id="upload-info" role="note" aria-label="Upload information" class="sidebar-container ui segment rdm-sidebar text-muted" > <h2 class="ui small header text-muted p-0 mb-5"><small>Technical metadata</small></h2> <dl class="m-0"> <dt class="inline"><small>Created</small></dt> <dd class="inline"> <small>December 7, 2023</small> </dd> <div> <dt class="rel-mt-1 inline"><small>Modified</small></dt> <dd class="inline"> <small>August 27, 2024</small> </dd> </div> </dl> </section> </aside> </div> </div> <div class="ui container"> <div class="ui relaxed grid"> <div class="two column row"> <div class="sixteen wide tablet eleven wide computer column"> <div class="ui grid"> <div class="centered row rel-mt-1"> <button id="jump-btn" class="jump-to-top ui button labeled icon" aria-label="Jump to top of page"> <i class="arrow alternate circle up outline icon"></i> Jump up </button> </div> </div></div> </div> </div> </div> </div> </div> </main> <footer id="rdm-footer-element"> <div class="footer-top"> <div class="ui container app-rdm-footer"> <div class="ui equal width stackable grid zenodo-footer"> <div class="column"> <h2 class="ui inverted tiny header">About</h2> <ul class="ui inverted link list"> <li class="item"> <a href="https://about.zenodo.org">About</a> </li> <li class="item"> <a href="https://about.zenodo.org/policies">Policies</a> </li> <li class="item"> <a href="https://about.zenodo.org/infrastructure">Infrastructure</a> </li> <li class="item"> <a href="https://about.zenodo.org/principles">Principles</a> </li> <li class="item"> <a href="https://about.zenodo.org/projects/">Projects</a> </li> <li class="item"> <a href="https://about.zenodo.org/roadmap/">Roadmap</a> </li> <li class="item"> <a href="https://about.zenodo.org/contact">Contact</a> </li> </ul> </div> <div class="column"> <h2 class="ui inverted tiny header">Blog</h2> <ul class="ui inverted link list"> <li class="item"> <a href="https://blog.zenodo.org">Blog</a> </li> </ul> </div> <div class="column"> <h2 class="ui inverted tiny header">Help</h2> <ul class="ui inverted link list"> <li class="item"> <a href="https://help.zenodo.org">FAQ</a> </li> <li class="item"> <a href="https://help.zenodo.org/docs/">Docs</a> </li> <li class="item"> <a href="https://help.zenodo.org/guides/">Guides</a> </li> <li class="item"> <a href="https://zenodo.org/support">Support</a> </li> </ul> </div> <div class="column"> <h2 class="ui inverted tiny header">Developers</h2> <ul class="ui inverted link list"> <li class="item"> <a href="https://developers.zenodo.org">REST API</a> </li> <li class="item"> <a href="https://developers.zenodo.org#oai-pmh">OAI-PMH</a> </li> </ul> </div> <div class="column"> <h2 class="ui inverted tiny header">Contribute</h2> <ul class="ui inverted link list"> <li class="item"> <a href="https://github.com/zenodo/zenodo-rdm"> <i class="icon external" aria-hidden="true"></i> GitHub </a> </li> <li class="item"> <a href="/donate"> <i class="icon external" aria-hidden="true"></i> Donate </a> </li> </ul> </div> <div class="six wide column right aligned"> <h2 class="ui inverted tiny header">Funded by</h2> <ul class="ui horizontal link list"> <li class="item"> <a href="https://home.cern" aria-label="CERN"> <img src="/static/images/cern.png" width="60" height="60" alt="" /> </a> </li> <li class="item"> <a href="https://www.openaire.eu" aria-label="OpenAIRE"> <img src="/static/images/openaire.png" width="60" height="60" alt="" /> </a> </li> <li class="item"> <a href="https://commission.europa.eu/index_en" aria-label="European Commission"> <img src="/static/images/eu.png" width="88" height="60" alt="" /> </a> </li> </ul> </div> </div> </div> </div> <div class="footer-bottom"> <div class="ui inverted container"> <div class="ui grid"> <div class="eight wide column left middle aligned"> <p class="m-0"> Powered by <a href="http://information-technology.web.cern.ch/about/computer-centre">CERN Data Centre</a> & <a href="https://inveniordm.docs.cern.ch/">InvenioRDM</a> </p> </div> <div class="eight wide column right aligned"> <ul class="ui inverted horizontal link list"> <li class="item"> <a href="https://stats.uptimerobot.com/vlYOVuWgM/">Status</a> </li> <li class="item"> <a href="https://about.zenodo.org/privacy-policy">Privacy policy</a> </li> <li class="item"> <a href="https://about.zenodo.org/cookie-policy">Cookie policy</a> </li> <li class="item"> <a href="https://about.zenodo.org/terms">Terms of Use</a> </li> <li class="item"> <a href="/support">Support</a> </li> </ul> </div> </div> </div> </div> </footer> <script type="text/javascript"> window.MathJax = { tex: { inlineMath: [['$', '$'], ['\\(', '\\)']], processEscapes: true // Allows escaping $ signs if needed } }; </script> <script type="text/javascript" src="//cdnjs.cloudflare.com/ajax/libs/mathjax/3.2.2/es5/tex-mml-chtml.js?config=TeX-AMS-MML_HTMLorMML"></script> <script src="/static/dist/js/manifest.85914225ed5d447be325.js"></script> <script src="/static/dist/js/73.c39079ca1fc2ae113347.js"></script> <script src="/static/dist/js/3526.e89ca3df1ebb93426a28.js"></script> <script src="/static/dist/js/theme.df2465216f8b783a462f.js"></script> <script src="/static/dist/js/9630.668b690274e548f98163.js"></script> <script src="/static/dist/js/1057.7d75f7650dc82016b0de.js"></script> <script src="/static/dist/js/7655.822a63bb4ea3764acdae.js"></script> <script src="/static/dist/js/9621.6535c4e4a93e5683c079.js"></script> <script src="/static/dist/js/5373.4d3c97d870fcbcceede3.js"></script> <script src="/static/dist/js/8871.6edcd2191521fae14176.js"></script> <script src="/static/dist/js/621.a65ad81b760d669506ff.js"></script> <script src="/static/dist/js/9827.77cd5b562048a6591df4.js"></script> <script src="/static/dist/js/742.c9ff6bca3a608a9bce7d.js"></script> <script src="/static/dist/js/base-theme-rdm.9d9bbd310b84172faad3.js"></script> <script src="/static/dist/js/i18n_app.99c66e0dc76dcd873a86.js"></script> <script src="/static/dist/js/4709.939b30788057693c892e.js"></script> <script src="/static/dist/js/5941.416c32bce9b1f6137489.js"></script> <script src="/static/dist/js/9736.60a1726b721ad3d427db.js"></script> <script src="/static/dist/js/5965.a9d2e38c2dcdd42ebc70.js"></script> <script src="/static/dist/js/1677.b755f75684136ec3634e.js"></script> <script src="/static/dist/js/8102.8ca37a7a6650ce75a7fa.js"></script> <script src="/static/dist/js/5368.01a2200ad661130e2972.js"></script> <script src="/static/dist/js/8585.f6b02d1a40609affd664.js"></script> <script src="/static/dist/js/1990.4198c9b3429de6dfebed.js"></script> <script src="/static/dist/js/3532.e8cb76db2b7edf78ccfa.js"></script> <script src="/static/dist/js/overridable-registry.d865c1ea4ce3e4ded8b7.js"></script> <script type='application/ld+json'>{"@context": "http://schema.org", "@id": "https://doi.org/10.5281/zenodo.10282180", "@type": "https://schema.org/ScholarlyArticle", "author": [{"@type": "Person", "affiliation": [{"@type": "Organization", "name": "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"}], "familyName": "Tsantekidis", "givenName": "Marinos", "name": "Tsantekidis, Marinos"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Munich, Munich, Germany"}], "familyName": "Abdelghani", "givenName": "Souleima", "name": "Abdelghani, Souleima"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Munich, Munich, Germany"}], "familyName": "Hamad", "givenName": "Mohammad", "name": "Hamad, Mohammad"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Braunschweig, Braunschweig, Germany"}], "familyName": "Prevelakis", "givenName": "Vassilis", "name": "Prevelakis, Vassilis"}], "contentSize": "544.14 KB", "creator": [{"@type": "Person", "affiliation": [{"@type": "Organization", "name": "AEGIS IT RESEARCH GmbH, Braunschweig, Germany"}], "familyName": "Tsantekidis", "givenName": "Marinos", "name": "Tsantekidis, Marinos"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Munich, Munich, Germany"}], "familyName": "Abdelghani", "givenName": "Souleima", "name": "Abdelghani, Souleima"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Munich, Munich, Germany"}], "familyName": "Hamad", "givenName": "Mohammad", "name": "Hamad, Mohammad"}, {"@type": "Person", "affiliation": [{"@type": "Organization", "name": "Technical University of Braunschweig, Braunschweig, Germany"}], "familyName": "Prevelakis", "givenName": "Vassilis", "name": "Prevelakis, Vassilis"}], "dateCreated": "2023-12-07T11:25:53.525993+00:00", "dateModified": "2024-08-27T15:30:21.257152+00:00", "datePublished": "2023-12-07", "description": "\u003cp\u003eThe ever-increasing complexity of automotive platforms combined with the introduction of commercial off-the-shelf software components (e.g., for the entertainment system) creates multiple attack vectors that adversaries can leverage to attack the platform. Traditional analysis techniques have difficulty dealing with such complex environments, especially considering the need for low-cost solutions. Hence, we propose in this paper to turn the logic around, and instead of trying to discover all possible vulnerabilities, we monitor the execution of a software system to ensure that it does not deviate from its nominal profile. In this paper, we demonstrate a technique for creating a state model mapping the execution of a system, and then by observing its interaction with the runtime environment through its invocation of various library functions, we can ensure that off-nominal behavior can be detected and acted upon. The valuation results provide further evidence of the wrapper mechanism\u0027s effectiveness and highlight its potential to enhance security while minimizing the impact on performance.\u003c/p\u003e", "funding": [{"funder": {"@id": "00k4n6c32", "@type": "Organization", "name": "European Commission"}, "identifier": "00k4n6c32::101070599", "name": "Secure OPen source softwarE and hardwaRe Adaptable framework (101070599)", "url": {"identifier": "https://cordis.europa.eu/projects/101070599", "scheme": "url"}}, {"funder": {"@id": "00k4n6c32", "@type": "Organization", "name": "European Commission"}, "identifier": "00k4n6c32::101120779", "name": "An innovative Virtual Reality based intrusion detection, incident investigation and response approach for enhancing the resilience, security, privacy and accountability of complex and heterogeneous digital systems and infrastructures (101120779)", "url": {"identifier": "https://cordis.europa.eu/projects/101120779", "scheme": "url"}}, {"funder": {"@id": "00k4n6c32", "@type": "Organization", "name": "European Commission"}, "name": "Joint Cybersecurity Operations Platform (JCOP) (INEA/CEF/ICT/A2020/2373266)"}, {"funder": {"@id": "00k4n6c32", "@type": "Organization", "name": "European Commission"}, "name": "Cyber Security Competence Development (CyberSecPro) (101083594)"}], "identifier": "https://doi.org/10.5281/zenodo.10282180", "inLanguage": {"@type": "Language", "alternateName": "eng", "name": "English"}, "keywords": "security, Software Intrusion Detection", "license": "https://creativecommons.org/licenses/by/4.0/legalcode", "name": "Creating a Security Enforcement Environment for a Vehicular Platform", "publisher": {"@type": "Organization", "name": "IEEE"}, "size": "544.14 KB", "url": "https://zenodo.org/records/10282180"}</script> <script src="/static/dist/js/invenio-app-rdm-landing-page-theme.9b56690388e335810f04.js"></script> <script src="/static/dist/js/9945.e11a5a6ff50535c72070.js"></script> <script src="/static/dist/js/1357.4e237807ffba81b213b0.js"></script> <script src="/static/dist/js/1644.2b2007bc83e4beeabfaf.js"></script> <script src="/static/dist/js/8962.cfabe841decd009221fd.js"></script> <script src="/static/dist/js/9300.a81535ba51a38f1472fe.js"></script> <script src="/static/dist/js/9693.dac033d778162b60d96f.js"></script> <script src="/static/dist/js/invenio-app-rdm-landing-page.024f3c02bb324ddef007.js"></script> <script src="/static/dist/js/previewer_theme.77f20174699c7786038a.js"></script> <script src="/static/dist/js/zenodo-rdm-citations.f6ca22bc7712ee9b03f7.js"></script> <div class="ui container info message cookie-banner hidden"> <i class="close icon"></i> <div> <i aria-hidden="true" class="info icon"></i> <p class="inline">This site uses cookies. Find out more on <a href="https://about.zenodo.org/cookie-policy">how we use cookies</a></p> </div> <div class="buttons"> <button class="ui button small primary" id="cookies-all">Accept all cookies</button> <button class="ui button small" id="cookies-essential">Accept only essential cookies</button> </div> </div> <script> var _paq = window._paq = window._paq || []; _paq.push(['requireCookieConsent']); (function() { var u="https://webanalytics.web.cern.ch/"; _paq.push(['setTrackerUrl', u+'matomo.php']); _paq.push(['setSiteId', '366']); var d=document, g=d.createElement('script'), s=d.getElementsByTagName('script')[0]; g.async=true; g.src=u+'matomo.js'; s.parentNode.insertBefore(g,s); })(); const cookieConsent = document.cookie .split("; ") .find((row) => row.startsWith("cookie_consent=")) ?.split("=")[1]; if (cookieConsent) { if (cookieConsent === "all") { matomo(); } } else { document.querySelector(".cookie-banner").classList.remove("hidden") _paq.push(['forgetConsentGiven']); } $('.cookie-banner .close') .on('click', function () { $(this) .closest('.message') .transition('fade'); setCookie("cookie_consent","essential"); }); $('#cookies-essential') .on('click', function () { $(this) .closest('.message') .transition('fade'); setCookie("cookie_consent","essential"); }); $('#cookies-all') .on('click', function () { $(this) .closest('.message') .transition('fade'); setCookie("cookie_consent","all"); _paq.push(['rememberCookieConsentGiven']); matomo(); }); function matomo() { /* tracker methods like "setCustomDimension" should be called before "trackPageView" */ _paq.push(['trackPageView']); _paq.push(['enableLinkTracking']); } function setCookie(cname, cvalue) { var d = new Date(); d.setTime(d.getTime() + (365 * 24 * 60 * 60 * 1000)); // one year var expires = "expires=" + d.toUTCString(); var cookie = cname + "=" + cvalue + ";" + expires + ";" cookie += "Domain=zenodo.org;Path=/;SameSite=None; Secure"; document.cookie = cookie; } </script> </body> </html>