9 papers
zk-ScalHard: Scalable and Hardware-Rooted Privacy-Preserving Authentication for Secure OTA Updates in Zonal SDVs
Shrikant Tangade, Bansi Pambhar, Valeria Loscri +1
The automotive industry is transitioning to Zonal-oriented Architectures (ZoA) for Software-Defined Vehicles (SDVs), enabling frequent over-the-air (OTA) updates for 100+ Electroni…
FIDEM: A Standard-Compliant Framework for Secure Binding of MUD Profiles to IoT Devices
Alessandro Lotto, Savio Sciancalepore, Alessandro Brighente +1
The Manufacturer Usage Description (MUD) standard enables enforcement of network restrictions for IoT devices based on their expected network traffic, as specified by manufacturers…
ORCA - An Automated Threat Analysis Pipeline for O-RAN Continuous Development
Felix Klement, Alessandro Brighente, Michele Polese +2
The Open-Radio Access Network (O-RAN) integrates numerous software components in a cloud-like deployment, opening the radio access network to previously unconsidered security threa…
A Practical Solution to Systematically Monitor Inconsistencies in SBOM-based Vulnerability Scanners
Martin Rosso, Muhammad Asad Jahangir Jaffar, Alessandro Brighente +1
Software Bill of Materials (SBOM) provides new opportunities for automated vulnerability identification in software products. While the industry is adopting SBOM-based Vulnerabilit…
Obfuscated Location Disclosure for Remote ID Enabled Drones
Alessandro Brighente, Mauro Conti, Matthijs Schotsman +1
The Remote ID (RID) regulation recently introduced by several aviation authorities worldwide (including the US and EU) forces commercial drones to regularly (max. every second) bro…
Cross-Service Token: Finding Attacks in 5G Core Networks
Anqi Chen, Riccardo Preatoni, Alessandro Brighente +2
5G marks a major departure from previous cellular architectures, by transitioning from a monolithic design of the core network to a Service-Based Architecture (SBA) where services…