panel on safety and resilience - iaria1) mcafee labs threats report 2015; 2) kaspersky security...

35
Panel on Safety and Resilience Safety and Resilience with 5G and IoT Advent Moderator: Mark Austin, University of Maryland, College Park, MD Third International Conference on Advances and Trends in Software Engineering (SOFTENG 2017), Venice, Italy May 3, 2017

Upload: others

Post on 21-Jun-2020

0 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Panel on Safety and Resilience

Safety and Resilience with 5G and IoT Advent

Moderator: Mark Austin,

University of Maryland, College Park, MD

Third International Conference on Advances and Trends in Software Engineering(SOFTENG 2017), Venice, Italy

May 3, 2017

Page 2: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Introduction

Page 3: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Expected Impact of 5G on Society

Platform for connected services:

Page 4: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Design Challenges

Scalability to address diverse services

Ultra-low energy – 10+ years of batter life ...

Ultra-high reliability – 1 out of 100 million packets lost ...

Ultra-high density – 1 million nodes per Km2 ...

Ultra-low latency (delay) – as low as 1 millisecond ...

Strong security – trusted data in sensitive industries (e.g.,healthcare) ...

Extreme user mobility – self-driving cars ....

Extreme data rates – 100+ Mbps user experience ...

Extreme capacity – 10 Tbps per Km2 ...

Deep coverage – to reach challenging locations ...

Deep awareness – discovery and learning (machine learning?)....

Page 5: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Safety Concerns

Will use of these technologies trigger medical problems inhumans?

How to assure cyber security?

Who and how will entities attack these systems?

How to design safety-critical systems?

Page 6: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Resilience of

Large-Scale Urban Systems

Page 7: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Design Challenges

Large-scale urban systems are highly interconnected andheterogeneous. Relief actions occur across multiple time scales ...

Page 8: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Planning for Relief Actions in New York City

Page 9: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Introducing The Panel

Moderator

Mark Austin, University of Maryland, CollegePark, USA

Panelists

Mohammad Rajabali Nejad, University ofTwente, Enschede, the Netherlands

Seppo Yrjl, Nokia, Finland

Andy Snow, Ohio University, USA

Page 10: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Summary of Key Points from the Panel Session

Safety and SecurityGood news – RF is non-ionizing radiation. Bad news – linkage tocancers is suspected, but so far, not shown to be causal.

Safety factors – frequency and power. 5G will use millimeter waves.40% of power is reflected by the human skin.

From a security standpoint, IoT is already targeted.

ResilienceGoal is to minimize the extent and duration of disruptions.

Notions of resilience cover multiple levels of system abstraction andcan include loss of situational awareness and actuation. Both factorslead to safety concerns.

Page 11: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Safety and Resiliency5G and IOT

NEXCOM 2017International Academy, Research and Industry Association

April 24, 2017

Andy SnowOhio University

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 12: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Safety and Resiliency

• 5G -- RF Safety

• IOT -- Resiliency & Safety

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 13: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5G RF Safety

• The Good News -- RF is non-ionizing radiation

• The Bad News – linkage to some cancers is suspected, but not shownto be causal so far

• However, according to the US National Cancer Institute:• "Radiofrequency energy, unlike ionizing radiation, does not cause DNA

damage that can lead to cancer.”

• “Its only consistently observed biological effect in humans is tissue heating.”

• “In animal studies, it has not been found to cause cancer or to enhance thecancer-causing effects of known chemical carcinogens."

• Safety factors• Frequency

• PowerCopyright April 2017 Andrew P. Snow: All Rights Reserved

Page 14: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Frequency

• 5G will use “millimeter waves”

• Electromagnetic band betweenmicrowave and infrared

• IEEE 802.11ad at 60 GHz

• US FCC approved licensing inthe 28, 37, 39 GHz bands for 5Gin 2016

Frequency Wavelength

(GHz) (mm)

1 300.0

2 150.0

5 60.0

10 30.0

15 20.0

20 15.0

25 12.0

30 10.0

300 1.05G

3G, 4G

MillimeterWaves

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 15: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

3G RF and Humans• Dutch experimentation in 2003 researched low dose 3G radiation to

mimic base station

• Double blind experiment• Experimental group (exposed to 3G radiation from base station)

• Control group (no radiation)

• Evaluators measured physiological data and administered cognitive tests

• Both subjects and evaluators did not know if individual exposed to radiation

• Results? Those exposed:• Had elevated temperature of brain

• Reported tingling

• Complained of headaches and nausea

• Performed better on cognition tests

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 16: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5G RF and Humans

• A 2015 study1 looked at millimeter wave affects on humans• At 60 GHz, 34 to 44 % of power is reflected from human skin

• More thermal experiments with MRI thermal imaging are needed asmillimeter waves heat up skin and eyes

• Another study2 in 2016 looked at power levels• Evaluated array antennas intended for user equipment and low-power radio

base stations in 5G in the 10-60 GHz

• For antennas transmitting at the human body, power significantly below 3Gand 4G mobile communication systems.

1T. Wu, T. S. Rappaport, C. M. Collins, “The Human Body and Millimeter Wave Wireless Communication Systems:Interactions and Implications,” 2015 IEEE International Conference on Communications (ICC), Jun. 2015.

2Thors, Björn, et al. "Exposure to RF EMF From Array Antennas in 5G Mobile Communication Equipment.“IEEE Access 4 (2016): 7469-7478.

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 17: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

IOT Resiliency and Safety

• Networked sensors and actuators• Sensor access problems – loss of awareness

• Actuator access problems – loss of control

• Both have safety implications, but which is worse?

• Depends on the application:• Safety versus convenience

• Consumer versus industrial

• Resiliency• Ability to minimize the size and duration of disruptions

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 18: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

IOTSERVER

A

S

S

A

S

SA

AA

SA

SA

SA

SA

SS

S

S

A

S

SA

AA

SA

SA

SA

SA

S

IOT

S = SensorA = ActuatorSA = Both

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 19: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

IOTSERVER

A

S

S

A

S

SA

AA

SA

SA

SA

SA

SS

S

S

A

S

SA

AA

SA

SA

SA

SA

S

Example of IOT Vulnerability

DoS

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 20: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

IOTSERVER

A

S

S

A

S

SA

AA

SA

SA

SA

SA

SS

S

S

A

S

SA

AA

SA

SA

SA

SA

S

DoS

Example of IOT Vulnerability

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 21: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

A

S

S

A

S

SA

AA

SA

SA

SA

SA

S

S

S

A

S

SA

AA

SA

SA

SA

SA

Redundancy Can Help

S S

IOTSERVER

S S

IOTSERVER

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 22: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Some Conclusions as of Today

• 5G RF Safety• 5G RF appears safer than 3G and 4G

• Some fears of skin cancer risk from mm wave energy of airport security scanning

• No evidence that low RF energy at mobile communication power causes cancers

• Not known how deleterious thermal effects will be

• With regard to cancers and thermal effects -- TIME will tell as there are over 3.5Billion lab rats out there!

• IOT Resiliency and Safety• DoS and Hacking issues

• High dependence on IoT will mean increased risks

• Much research required

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 23: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

What’s Next?

• 5G RF -- Safety• Wireless service providers, equipment manufacturers and governments must

fund more research.

• Ostrich head-in-the-sand is a strategy, albeit a poor one!!

• IoT Resiliency• Policy makers must start the dialogue abut possible restrictions on IoT

services, as it relates to large-scale IoT sensor and actuator outages

• Technologists should intensify research in the area of Re-routing Protocols atthe micro network levels.

Copyright April 2017 Andrew P. Snow: All Rights Reserved

Page 24: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

SAFETY AND RESILIENCE WITH 5G AND IOTADVENTSDR MOHAMMAD RAJABALI NEJADPESARO 2017VENICE, ITALY

Page 25: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Assistant Professor: University of Twente, System Safety Associate Editor: J. of Intelligent Automation and Software Engineering Advisory Board: J. of Advances in Systems and Measurements

Postdoc, University of Montreal, Canada, “Reliability of Infrastructures” PhD, TUDelft, “Reliability Methods for Finite Elements Models” MSC, IUST, Tehran, “Safety of Civil Structures”

Worked in various projects

ABOUT THE PANELIST

Page 26: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

SAFETY & RESILIENCE

Safety

Free from harm

Human

No injury or loss

Resilience

Continue to function

Functionality

Failure does not stop the

system

Page 27: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Products Smart phones, TVs, watches

Machines Smart cars, trains, drones

Systems Smart grid, smart healthcare

5/2/2017Rajabalinejad, M., Panel discussion, PESARO, Venice, Italy 4

COMMUNICATION TECHNOLOGY - 5G/ IOTFOR PRODUCTS, MACHINES, AND SYSTEMS

Micro-drone swarm

Page 28: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

Capabilities such as remote access big data artificial intelligence

For achieving low cost high performances

5/2/2017Rajabalinejad, M., Panel discussion, PESARO, Venice, Italy 5

IOT ENABLES INDUSTRIAL REVOLUTIONAN EXAMPLE ADVANTEGE

https://www.youtube.com/watch?v=dkddSaOOZcs

Page 29: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

#1 SAFTY RULE Safe guarding beasts in the zoo machines in work-floors

New rule for robots, cobots, exo-skeleton servant (indoor) drones

Man-machine battle: see https://www.youtube.com/watch?v=JYuOFhFrEMw

5/2/2017Rajabalinejad, M., Panel discussion, PESARO, Venice, Italy 6

THE GAME IS CHANGING SO DOES IT RULES

Page 30: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

1

© 2016 Nokia1

The Future X Network:Building the digital fabric for the automation of everything and the creation of time

COCORA 2017: Safety and Resilience with 5G and IoT AdventsWednesday, April 26th, 2017Dr. Seppo YrjöläNokia Corporate Strategy & Development

© 2017 Nokia2

5G meets security and IoT in the hype cycleShift from technical infrastructure to ecosystem-enabling platforms

Platform enablers

Hype Cycle for the Telecommunications Industry and Hype Cycle for Emerging Technologies, Gartner July 2016

Page 31: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

2

© 2017 Nokia3

Six global megatrends driving massive new technology requirements – and opportunities

Network, compute & storage

Broadband every-where, distributed cloud, near infinite storage

Connectivity for a trillion things

Internet of Things

Augmented intelligence

Human assistance and task automation at machine scale

Human & machine interaction

Virtual and augment-ed reality, reshaping how we interact with machines

Social & trust economics

Sharing economy and digital currencies making trust and security essential

Digitalization & ecosystems

Digitalization of operations expand-ing into consumer and biology

© 2017 Nokia4

Discover(Information)

Sell(Media)

Share(Personal)

Share(Media)

Automate(Everything)

Enterprises& Verticals

Consumers

New networking & connectivity era

Giga–Tera–Peta– Exa-Zeta

Page 32: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

3

© 2017 Nokia5

Mary Meeker, Internet Trends 2015

Future network driven by an enterprise/industrial revolution

© 2017 Nokia6

The Future X network - 4 key business value dimensions

Edge CloudCore Cloud

1ms10ms100ms1s10s 100us 10us

1kbps

10kbps

100kbps

1Mbps

10Mbps

100Mbps

1Gbps

10Gbps Cloud RAN

360° VR (hi-res)

Electric grid control

Cloud-assisted driving

Autonomous vehicles

Chatbots

4k Video streaming

Sensors

Home Sensors

Haptic VR

Remotetraining

360° video (free viewpoint)

Remote control vehicles

SD Video streaming

360° video (lo-res)

Ba

nd

wid

th

Latency

Video VR/AR

Things System Control

Virtual RAN

Page 33: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

4

© 2017 Nokia7

Analog Needs

…with Trust(in Privacy & Security)

Create Time (by Prediction & Automation)

The new value in time & trust

Free Wifi

Digital Needs

© 2017 Nokia8

The 100x shift: a new digital infrastructure for the automation of everything

PeopleDevices

ComputeTech

IPNetworks

BroadbandAccess

CoreCloud

}

Edge Cloud

BroadbandAccess

IPNetworks

ComputeTech

♥Things

$

100ms

10Mbps

1 day

$1000

10B

1ms

10Gbps

10 years

$1

100B+

- +

Cost + Performance + Agility � Confluence of Networks & Cloud

100 yrsTraditional telecommunicationscentralized network architecture

Radically new distributedFuture X network architecture

Customer confidential

Page 34: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

5

© 2017 Nokia9

© Nokia Solutions and Networks 2015

1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee: Net Losses: Estimating the Global Cost of Cybercrime; 5) Ponemon Institute - report-2014; 6) Nokia Threat Intelligence Labs report, H2 2015

Threat landscape: The potential attack space is growing

Fixed and mobile malware grows

• Fixed remains strong at 11%6, mobile doubled1

• Android attacks increased 4-fold2, iOS starting to be attacked

• More sophisticated and dangerous than ever6

IoT is already targeted

• 70% of devices do not use encryption3

• 90% of devices collected at least one piece of personal information3

• Several examples of attacks already

Cybercrime is a big business

• Professional, organized and funded

• Same level as illegal drug trade (~1% GDP)4

• 53% of organizations don't feel protected against attacks5

© 2017 Nokia10

Transforming security paradigms & approaches

Antivirus Automated Malware Detection & Threat Intelligence

Authentication, Authorization & Accounting Identity & Access Management – “The New Perimeter”

Security Information Event Management Security Intelligence & Analytics

Manual Operations & Mitigation Orchestrated Operations & Predictive Response

Legacy Security Software Next Generation Solutions

Page 35: Panel on Safety and Resilience - IARIA1) McAfee Labs Threats report 2015; 2) Kaspersky Security Bulletin 2014; 3) HP - Internet of Things Research Study - 2014 report; 4) Intel - McAfee:

5/2/2017

6

© 2017 Nokia11

Security and privacy are fundamental elements to expand the human possibilities of a connected world

© 2017 Nokia11

Thank youQuestions/discussion?

[email protected]