Technological advances have enabled multiple countries to consider implementing Smart City Infrastructure to provide in-depth insights into different data points and enhance the lives of citizens. Unfortunately, these new technological implementations also entice adversaries and cybercriminals to execute cyber-attacks and commit criminal acts on these modern infrastructures. Given the borderless nature of cyber attacks, varying levels of understanding of smart city infrastructure and ongoing investigation workloads, law enforcement agencies and investigators would be hard-pressed to respond to these kinds of cybercrime. Without an investigative capability by investigators, these smart infrastructures could become new targets favored by cybercriminals. To address the challenges faced by investigators, we propose a common definition of smart city infrastructure. Based on the definition, we utilize the STRIDE threat modeling methodology and the Microsoft Threat Modeling Tool to identify threats present in the infrastructure and create a threat model which can be further customized or extended by interested parties. Next, we map offences, possible evidence sources and types of threats identified to help investigators understand what crimes could have been committed and what evidence would be required in their investigation work. Finally, noting that Smart City Infrastructure investigations would be a global multi-faceted challenge, we discuss technical and legal opportunities in digital forensics on Smart City Infrastructure.
翻译:由于网络攻击的无边界性质、对智能城市基础设施的理解程度不同以及不断调查的工作量,执法机构和调查人员将难以应对这类网络犯罪。没有调查人员的调查能力,这些智能城市基础设施可能成为网络罪犯喜欢的新目标。为了应对调查人员面临的挑战,我们提出了智能城市基础设施的共同定义。根据定义,我们利用STRIDE威胁模型和微软威胁模型工具来查明基础设施中存在的威胁,并创建一个可由有关各方进一步定制或扩展的威胁模型。接下来,我们绘制犯罪图、可能的证据来源和查明的威胁类型,以帮助调查人员了解可能发生的犯罪以及调查工作中需要哪些证据。最后,我们指出智能城市基础设施调查将是一个全球性的多面挑战,我们讨论数字法医城市的技术和法律机会。