Skip to main navigation Skip to search Skip to main content

A Model-Based Approach to Automotive Security Analysis:Cross-Domain Application of the Cybersecurity Toolbox

Research output: Contribution to conferencePaperpeer-review

Abstract

As modern vehicles become increasingly complex and connected, integrating cybersecurity into early design stages is crucial. This paper presents the adaptation of the Cybersecurity Toolbox, a graphical domain-specific language (DSL) originally developed for smart grids, to the automotive domain.
The DSL was reviewed and aligned with automotive standards like ISO/SAE 21434 and compliments the applicability of cybersecurity guidance normatives like UN R155.
A controlled experiment about a FlexRay-based braking system validated the generic method and applicability of the Cybersecurity Toolbox in this cross-domain use case.
In synergy with the ARAM Toolbox for creating a high-level architecture description, traceability across systems architecture and cybersecurity views was achieved by an abstraction pattern.
The study demonstrates the DSL's usability, semantic clarity, and automation potential, validated by students who conducted a well-structured, specification-compliant security analysis based on publicly available documentation of the Cybersecurity Toolbox.
Original languageEnglish
Publication statusAccepted/In press - 2025
Event2025 IEEE International Symposium on Systems Engineering: IEEE ISSE 2025 - ENSTA Paris, France, Paris, France
Duration: 28 Oct 202530 Oct 2025
https://2025.ieeeisse.org/

Conference

Conference2025 IEEE International Symposium on Systems Engineering
Country/TerritoryFrance
CityParis
Period28/10/2530/10/25
Internet address

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 7 - Affordable and Clean Energy
    SDG 7 Affordable and Clean Energy
  2. SDG 9 - Industry, Innovation, and Infrastructure
    SDG 9 Industry, Innovation, and Infrastructure

Keywords

  • Automotive Cybersecurity
  • Model-Based Systems Engineering
  • Domain-Specific Language
  • Systems architecture

Classification according to Österreichische Systematik der Wissenschaftszweige (ÖFOS 2012)

  • 102016 IT security

Applied Research Level (ARL)

  • ARL Level 3 - Proof of the functionality of a principle

Research focus/foci

  • Industrial Informatics

Fingerprint

Dive into the research topics of 'A Model-Based Approach to Automotive Security Analysis:Cross-Domain Application of the Cybersecurity Toolbox'. Together they form a unique fingerprint.

Cite this