Mohammed Al-Mhiqani
Taxonomy of Emerging Security Risks in Digital Railway
Al-Mhiqani, Mohammed; Ani, Uchenna; Watson, Jeremy; He, Hongmei
Abstract
The railway industry has embraced digitisation and interconnectivity by introducing Information and Communication Technologies into traditional operational technology infrastructure. This convergence has brought numerous advantages, including improved visibility, reliability, operational efficiency, and better passenger experience. But it has also introduced new cyber risks and amplified the existing ones in Digital Railways (DRs) and the entire supply chain. The threat and vulnerability landscape has become wider than ever. To better understand the scope of security risks, impacts on normal operations, and appropriate solutions, a security taxonomy that covers the broader views and contexts around DRs can help. Recorded attacks show that railway systems/networks are clearly intolerant to network interference, and require strong security, resilience, and safety. Cyber attack impacts on DRs can take economic or financial, reputational, environmental, and/or physical dimensions, and can target rail Operational Technology OT data and functionality, rail Information Technology IT data and functionality, rail IT and OT workforce, and rail organisational structures, cultures, and exploit policies, especially when they are either weak or non-existent. Attacks can come from a range of malicious threat actors driven by their diverse motives. DR is a socio-technical system that is complex, large, and distributed, comprising technologies, humans, organisational structures, policies elements and attributes, etc. Thus, a socio-technical security approach is required to effectively mitigate cyber threat impacts. DR stakeholders must collaborate to make the system functions work properly so that a successful implementation of change, security, resilience, and safety operations depends on the ‘joint optimisation’ of the system’s organisational/operational, technology, physical, and human or people security controls.
Citation
Al-Mhiqani, M., Ani, U., Watson, J., & He, H. (2023, July). Taxonomy of Emerging Security Risks in Digital Railway. Presented at CYBER SCIENCE 2023, University of Aalborg, Copenhagen, Denmark
Presentation Conference Type | Conference Paper (published) |
---|---|
Conference Name | CYBER SCIENCE 2023 |
Start Date | Jul 3, 2023 |
End Date | Jul 4, 2023 |
Online Publication Date | Feb 18, 2024 |
Publication Date | Feb 18, 2024 |
Deposit Date | Jul 2, 2025 |
Publisher | Springer Nature [academic journals on nature.com] |
Peer Reviewed | Peer Reviewed |
Pages | 251-281 |
Series Title | Springer Proceedings in Complexity / The International Conference on Cybersecurity, Situational Awareness and Social Media |
Series ISSN | 2213-8692; 2213-8684 |
Book Title | Proceedings of the International Conference on Cybersecurity, Situational Awareness and Social Media |
ISBN | 978-981-99-6973-9 |
DOI | https://doi.org/10.1007/978-981-99-6974-6_15 |
Public URL | https://keele-repository.worktribe.com/output/1317384 |
Publisher URL | https://link.springer.com/chapter/10.1007/978-981-99-6974-6_15 |
Additional Information | First Online: 18 February 2024; Conference Acronym: CYBER SCIENCE; Conference Name: The International Conference on Cybersecurity, Situational Awareness and Social Media; Conference City: Copenhagen; Conference Country: Denmark; Conference Year: 2023; Conference Start Date: 3 July 2023; Conference End Date: 4 July 2023; Conference ID: cyberscience2023; Conference URL: https://c-mric.org/ |
You might also like
Digital twins in cyber effects modelling of IoT/CPS points of low resilience
(2023)
Journal Article
Super-forecasting the 'technological singularity' risks from artificial intelligence
(2022)
Journal Article
Downloadable Citations
About Keele Repository
Administrator e-mail: research.openaccess@keele.ac.uk
This application uses the following open-source libraries:
SheetJS Community Edition
Apache License Version 2.0 (http://www.apache.org/licenses/)
PDF.js
Apache License Version 2.0 (http://www.apache.org/licenses/)
Font Awesome
SIL OFL 1.1 (http://scripts.sil.org/OFL)
MIT License (http://opensource.org/licenses/mit-license.html)
CC BY 3.0 ( http://creativecommons.org/licenses/by/3.0/)
Powered by Worktribe © 2025
Advanced Search