<?xml version="1.0" encoding="UTF-8"?>
<mets:METS xmlns:mets="http://www.loc.gov/METS/" xmlns:xlink="http://www.w3.org/TR/xlink/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:dim="http://www.dspace.org/xmlns/dspace/dim" OBJEDIT="/xmlui/admin/item?itemID=109984" OBJID="/xmlui/handle/11531/108348" PROFILE="DSPACE METS SIP Profile 1.0" LABEL="DSpace Item" ID="hdl:11531/108348">
<mets:dmdSec GROUPID="group_dmd_0" ID="dmd_1">
<mets:mdWrap MDTYPE="OTHER" OTHERMDTYPE="DIM">
<mets:xmlData>
<dim:dim dspaceType="ITEM">
<dim:field authority="0000-0001-7459-0566" element="contributor" qualifier="author" confidence="ACCEPTED" language="es-ES" mdschema="dc">Gesteira Miñarro, Roberto</dim:field>
<dim:field authority="7791823A-C6BE-4889-84B6-C9A6DFF8506E" element="contributor" qualifier="author" confidence="ACCEPTED" language="es-ES" mdschema="dc">Yoshizawa, Takahito</dim:field>
<dim:field authority="0000-0002-8963-5074" element="contributor" qualifier="author" confidence="ACCEPTED" language="es-ES" mdschema="dc">Palacios Hielscher, Rafael</dim:field>
<dim:field authority="0000-0001-9954-3504" element="contributor" qualifier="author" confidence="ACCEPTED" language="es-ES" mdschema="dc">López López, Gregorio</dim:field>
<dim:field element="date" qualifier="accessioned" mdschema="dc">2026-01-26T05:18:47Z</dim:field>
<dim:field element="date" qualifier="available" mdschema="dc">2026-01-26T05:18:47Z</dim:field>
<dim:field element="date" qualifier="issued" language="es_ES" mdschema="dc">2026-04-01</dim:field>
<dim:field element="identifier" qualifier="issn" language="es_ES" mdschema="dc">0920-5489</dim:field>
<dim:field element="identifier" qualifier="uri" language="es_ES" mdschema="dc">https://doi.org/10.1016/j.csi.2026.104133</dim:field>
<dim:field element="description" language="es_ES" mdschema="dc">Artículos en revistas</dim:field>
<dim:field element="description" qualifier="abstract" language="es-ES" mdschema="dc">Vehicle-to-Everything (V2X) communication technologies are revolutionizing transportation by enabling real-time information exchange among vehicles, infrastructure, pedestrians, and networks. While these technologies offer significant benefits in terms of road safety, traffic efficiency, and support for autonomous driving, they also introduce critical security and privacy risks due to their decentralized and dynamic nature. In this paper, we perform an analysis of the ETSI Intelligent Transport System (ITS) standards, specifications and reports to identify vulnerabilities that could be exploited to cause cyber–physical damages. We focus particularly on Cooperative Awareness Messages (CAM) and Decentralized Environmental Notification Messages (DENM) in the ETSI ITS standard, and pseudonym ID mechanisms. We identified several security issues, including vulnerabilities that lead to replay attacks, identity-based attacks such as spoofing and Sybil attacks, as well as grayhole attacks. We present attack scenarios where the issues found can be leveraged to compromise road safety, and quantify their potential impact through simulations using Eclipse SUMO. These scenarios might be relevant during a transition period where V2X-enabled vehicles coexist with legacy vehicles. Furthermore, we propose mitigations to address the identified issues. Our findings highlight the need for stronger security measures in V2X systems to ensure both safety and security in future intelligent transportation systems.</dim:field>
<dim:field element="description" qualifier="abstract" language="en-GB" mdschema="dc">Vehicle-to-Everything (V2X) communication technologies are revolutionizing transportation by enabling real-time information exchange among vehicles, infrastructure, pedestrians, and networks. While these technologies offer significant benefits in terms of road safety, traffic efficiency, and support for autonomous driving, they also introduce critical security and privacy risks due to their decentralized and dynamic nature. In this paper, we perform an analysis of the ETSI Intelligent Transport System (ITS) standards, specifications and reports to identify vulnerabilities that could be exploited to cause cyber–physical damages. We focus particularly on Cooperative Awareness Messages (CAM) and Decentralized Environmental Notification Messages (DENM) in the ETSI ITS standard, and pseudonym ID mechanisms. We identified several security issues, including vulnerabilities that lead to replay attacks, identity-based attacks such as spoofing and Sybil attacks, as well as grayhole attacks. We present attack scenarios where the issues found can be leveraged to compromise road safety, and quantify their potential impact through simulations using Eclipse SUMO. These scenarios might be relevant during a transition period where V2X-enabled vehicles coexist with legacy vehicles. Furthermore, we propose mitigations to address the identified issues. Our findings highlight the need for stronger security measures in V2X systems to ensure both safety and security in future intelligent transportation systems.</dim:field>
<dim:field element="format" qualifier="mimetype" language="es_ES" mdschema="dc">application/pdf</dim:field>
<dim:field element="language" qualifier="iso" language="es_ES" mdschema="dc">en-GB</dim:field>
<dim:field element="source" language="es_ES" mdschema="dc">Revista: Computer Standards &amp; Interfaces, Periodo: 1, Volumen: online, Número: , Página inicial: 104133-1, Página final: 104133-10</dim:field>
<dim:field element="subject" qualifier="other" language="es_ES" mdschema="dc">Instituto de Investigación Tecnológica (IIT)</dim:field>
<dim:field element="title" language="es_ES" mdschema="dc">Highway to Hack  - Security gaps in ETSI ITS standards</dim:field>
<dim:field element="type" language="es_ES" mdschema="dc">info:eu-repo/semantics/article</dim:field>
<dim:field element="description" qualifier="version" language="es_ES" mdschema="dc">info:eu-repo/semantics/publishedVersion</dim:field>
<dim:field element="rights" qualifier="holder" language="es_ES" mdschema="dc"/>
<dim:field element="rights" qualifier="accessRights" language="es_ES" mdschema="dc">info:eu-repo/semantics/openAccess</dim:field>
<dim:field element="keywords" language="es-ES" mdschema="dc">Cooperative awareness; Vehicle-to-everything; Replay attack; Pseudonym; Simulation; Cybersecurity</dim:field>
<dim:field element="keywords" language="en-GB" mdschema="dc">Cooperative awareness; Vehicle-to-everything; Replay attack; Pseudonym; Simulation; Cybersecurity</dim:field>
</dim:dim>
</mets:xmlData>
</mets:mdWrap>
</mets:dmdSec>
<mets:fileSec>
<mets:fileGrp USE="CONTENT">
<mets:file CHECKSUMTYPE="MD5" GROUPID="group_file_802001" ID="file_802001" MIMETYPE="application/pdf" SIZE="3706" CHECKSUM="8a12c5da67d626c89a598d3bb0161da7">
<mets:FLocat LOCTYPE="URL" xlink:title="IIT-26-036R_preview.pdf" xlink:type="locator" xlink:href="/xmlui/bitstream/handle/11531/108348/IIT-26-036R_preview.pdf?sequence=1&amp;isAllowed=y"/>
</mets:file>
</mets:fileGrp>
</mets:fileSec>
<mets:structMap LABEL="DSpace" TYPE="LOGICAL">
<mets:div DMDID="dmd_1" TYPE="DSpace Item">
<mets:div ID="div_2" TYPE="DSpace Content Bitstream">
<mets:fptr FILEID="file_802001"/>
</mets:div>
</mets:div>
</mets:structMap>
</mets:METS>
