Traceability in supply chains: A Cyber security analysis

被引:21
|
作者
Syed, Naeem Firdous [1 ]
Shah, Syed W. [1 ]
Trujillo-Rasua, Rolando [1 ]
Doss, Robin [1 ]
机构
[1] Deakin Univ, Ctr Cyber Secur Res & Innovat CSRI, Geelong, Vic, Australia
关键词
Traceability architecture; Threat analysis; Cyber security; STRIDE; GS1; IoT; THREAT; MIDDLEWARE; INFORMATION; CHALLENGES; FRAMEWORK; INTERNET; ATTACKS; SYSTEMS;
D O I
10.1016/j.cose.2021.102536
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Digital technologies are increasingly being adopted in modern supply chains for product traceability, enabling data sharing amongst trading partners, quick availability of product data, and end-to-end visibility of products. This adoption increases the system attack-surface and the number of cyber threats capable of harmful business impact, such as leak of business data, disruption of business operations, and loss of reputation, intellectual prop-erty and financial assets. A supply chain network thus needs an effective cyber security and threat management strategy, which requires reaching a thorough understanding of the most important assets and resources in a supply chain traceability system, the cyber threats that may impact them, and potential countermeasures. This article contributes a comprehensive threat modeling report on supply chain traceability systems, where we make explicit more than a hundred relations between assets, threats and countermeasures of relevance to supply chain traceability. Our analysis is reproducible, extensible and falsifiable. Reproducibility is achieved by following a systematic asset-centric threat modeling approach and adopting the STRIDE threat model to present a description of common threats; extensibility by using a layered-architecture for supply chains which the analyst can accommodate to a concrete implementation; and falsifiability by providing the sources used to establish the relation (asset, threat, countermeasure). Albeit the focus of the analysis is on technology, for the sake of completeness, the article briefly analyses secure traceability in supply chains when people and processes are made part of the system. (c) 2021 Elsevier Ltd. All rights reserved.
引用
收藏
页数:24
相关论文
共 50 条
  • [1] Global supply chains security: a comparative analysis of emerging threats and traceability solutions
    Gokkaya, Betul
    Karafili, Erisa
    Aniello, Leonardo
    Halak, Basel
    [J]. BENCHMARKING-AN INTERNATIONAL JOURNAL, 2024,
  • [2] Cyber security risks in globalized supply chains: conceptual framework
    Pandey, Shipra
    Singh, Rajesh Kumar
    Gunasekaran, Angappa
    Kaushik, Anjali
    [J]. JOURNAL OF GLOBAL OPERATIONS AND STRATEGIC SOURCING, 2020, 13 (01) : 103 - 128
  • [3] Traceability and reputation in supply chains
    Saak, Alexander E.
    [J]. INTERNATIONAL JOURNAL OF PRODUCTION ECONOMICS, 2016, 177 : 149 - 162
  • [4] TRACEABILITY IN FOOD SUPPLY CHAINS
    Isbasescu, Teodor Ion
    [J]. SCIENTIFIC PAPERS-SERIES MANAGEMENT ECONOMIC ENGINEERING IN AGRICULTURE AND RURAL DEVELOPMENT, 2009, 9 (03) : 117 - 119
  • [5] Traceability in fresh produce supply chains
    Bollen, AF
    [J]. Proceedings of the International Conference Postharvest Unlimited Downunder 2004, 2005, (687): : 279 - 288
  • [6] Traceability provides Security The Deciphering of Safety Codes for global Food Supply Chains is essential
    Sheth, Chirag
    [J]. FLEISCHWIRTSCHAFT, 2017, 97 (03): : 42 - 43
  • [7] Assessment of Cyber Security Implications of New Technology Integrations into Military Supply Chains
    Sobb, Theresa May
    Turnbull, Benjamin
    [J]. 2020 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2020), 2020, : 128 - 135
  • [8] Cyber-physical Risk Security Framework Development in Digital Supply Chains
    Skrodelis, Heinrihs Kristians
    Romanovs, Andrejs
    [J]. 2021 62ND INTERNATIONAL SCIENTIFIC CONFERENCE ON INFORMATION TECHNOLOGY AND MANAGEMENT SCIENCE OF RIGA TECHNICAL UNIVERSITY (ITMS), 2021,
  • [9] Holonic Systems for Traceability in Fruit Supply Chains
    Cader, A.
    Kruger, K.
    Basson, A. H.
    [J]. SERVICE ORIENTED, HOLONIC AND MULTI-AGENT MANUFACTURING SYSTEMS FOR INDUSTRY OF THE FUTURE, SOHOMA 2023, 2024, 1136 : 62 - 73
  • [10] Product traceability in food-supply chains
    van der Vorst, JGAJ
    [J]. ACCREDITATION AND QUALITY ASSURANCE, 2006, 11 (1-2) : 33 - 37