A Qualitative Risk Analysis for the GPRS Technology

被引:4
作者
Xenakis, Christos [1 ]
Apostolopoulou, Danae [2 ]
Panou, Angeliki [1 ]
Stavrakakis, Loannis [2 ]
机构
[1] Univ Piraeus, Dept Technol Educ & Digital Syst, Piraeus, Greece
[2] Univ Athens, Dept Informat Telecommun, Athens, Greece
来源
EUC 2008: PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON EMBEDDED AND UBIQUITOUS COMPUTING, VOL 2, WORKSHOPS | 2008年
关键词
D O I
10.1109/EUC.2008.123
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper presents a qualitative risk analysis of the General Packet Radio Service (GPRS) technology. GPRS presents several essential security weaknesses which may lead to security attacks that can compromise the network operation and the data transfer. We perform a detailed threat analysis by identifying the possible attacks that may result from the GPRS security, weaknesses. The analyzed threats are categorized into critical areas of GPRS security exposure and further divided into threats that compromise the availability, confidentiality, integrity, privacy, authorization and authentication of the system. each threat is associated with a qualitative risk value that incorporates the likelihood of the attack and its potential impact on the system. The understanding gained from the analysis is used to classify, the threats in low and high risk threats and define the specific areas of GPRS that require additional security measures.
引用
收藏
页码:61 / +
页数:2
相关论文
共 24 条
[1]  
*3GPP TS, 2003, 3GPP TS 03 03 V7 8 0
[2]  
*3GPP TS, 2004, 3GPP TS 09 02 V7 15
[3]  
*3GPP TS, 2001, 3GPP TS 21 133 V4 1
[4]  
*3GPP TS, 2001, 3GPP TS 01 61 V7 0 0
[5]  
*3GPP TS, 2002, 3GPP TS 03 6 V7 9 0
[6]  
*3GPP TS, 2002, 3GPP TS 09 60 V7 10
[7]  
[Anonymous], 1999, GSM 03 20 SECURITY R
[8]  
*AS NZS, 1999, 43601999 ASNZS
[9]  
BAKER WH, 2008, 100614V800 ETSI TS
[10]  
Barkan E, 2003, LECT NOTES COMPUT SC, V2729, P600