Laboratoire d'InfoRmatique en Image et Systèmes d'information

Laboratoire d'InfoRmatique en Image et Systèmes d'information
UMR 5205 CNRS / INSA Lyon / Université Claude Bernard Lyon 1 / Université Lumière Lyon 2 / École Centrale de Lyon
Xiaoyang Zhu


PhD student

Team Service Oriented Computing
Institution Institut National des Sciences Appliquées de Lyon
Location Blaise Pascal (INSA)
E-mail xiaoyang.zhu at
Subject Towards Secured M2M-based Service-Oriented Systems
Abstract The advent service-oriented architectures (SOA) and middleware are recently studied to enhance reusability and adaptability of IoT based applications, leading to the Internet of Things (IoT) and to the development of Machine-to-Machine technologies (M2M). Since M2M systems are parts of most critical infrastructures, many concerns have been raised about their vulnerabilities to security attacks. M2M technologies are particularly exposed to threats and vulnerabilities in networked and distributed environments. Current information security standards fail to handle unconventional characteristics of cyber-physical systems with dynamically reconfiguration and automation capabilities at multiple scales. Most of research for securing M2M has focused on safety and basic security mechanisms for authentication and response to security breaches and they do not consider security concerns in their distributed software architectures at the design time, neither assessing security risks of physical entities and their interactions at runtime. The goal of this thesis is to bridge this gap by focusing on 1) Security-by-design for developing SOA-based M2M systems, 2) Vulnerabilities assessment and security risk treatment at design and runtime, and 3) Resilient control to enable end-to-end security policies in distributed environments and mobile connected devices.
Advisor Youakim Badr

