OASIS: An Intrusion Detection System Embedded in Bluetooth Low Energy Controllers

被引:0
|
作者
Cayre, Romain [1 ,2 ]
Nicomette, Vincent [3 ]
Auriol, Guillaume [3 ]
Kaaniche, Mohamed [4 ]
Francillon, Aurelien [1 ]
机构
[1] EURECOM, Sophia Antipolis, France
[2] Apsys Lab, Paris, France
[3] Univ Toulouse, INSA, LAAS, Toulouse, France
[4] CNRS, LAAS, Toulouse, France
关键词
Intrusion Detection; Bluetooth; Controllers; Instrumentation; PLACEMENT;
D O I
10.1145/3634737.3645004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Bluetooth Low Energy has established itself as one of the central protocols of the Internet of Things. Its many features (mobility, low energy consumption) make it an attractive protocol for smart devices. However, numerous critical vulnerabilities affecting BLE have been made public in recent years, some of which are linked to the protocol's design itself. The impossibility of correcting these vulnerabilities without affecting the specification requires the development of effective intrusion detection systems, enabling the detection and prevention of these threats. Unfortunately, the protocol relies on peer-to-peer communications and introduces many complex and dynamic mechanisms (e.g., channel hopping), making monitoring complex, costly and limited. Existing intrusion detection approaches lack flexibility, are limited in scope and introduce high deployment costs. In this paper, we explore a novel approach consisting in embedding an intrusion detection system directly within BLE controllers. This strategic position tackles these challenges by enabling a more advanced analysis and instrumentation of the protocol and opens the way to new defensive applications. We propose OASIS, a framework for injecting detection heuristics into controllers' firmwares in a generic way without affecting the normal operation of the protocol stack. It can be deployed in various contexts during the life cycle of a device, from the chip manufacturer to a software developer making use of proprietary components, or even in a full black box context by a security analyst to harden a commercial product. We describe its modular architecture and present its implementation within five of the most popular BLE chips from three different manufacturers, deployed in billions of devices and embedding heterogeneous protocol stacks. We present five modules for critical low-level protocol attack detection. We show that OASIS has a low impact on the controller performance (power, timing, memory) and evaluate its usage in a real-world setting.
引用
收藏
页码:700 / 715
页数:16
相关论文
共 50 条
  • [1] Goosewolf: An Embedded Intrusion Detection System for Advanced Programmable Logic Controllers
    Allison, David
    Mclaughlin, Kieran
    Smith, Paul
    DIGITAL THREATS: RESEARCH AND PRACTICE, 2023, 4 (04):
  • [2] Bluetooth Intrusion Detection System(BIDS)
    Satam, Pratik
    Satam, Shalaka
    Hariri, Salim
    2018 IEEE/ACS 15TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2018,
  • [3] Indirect Bluetooth Low Energy Connection Detection
    Hujnak, Ondrej
    Malinka, Kamil
    Hanacek, Petr
    2023 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN, 2023, : 328 - 333
  • [4] Development of Wearable Wireless Electrocardiogram Detection System using Bluetooth Low Energy
    Jung, Jaehyo
    Shin, Siho
    Kang, Mingu
    Kang, Kyeung Ho
    Kim, Youn Tae
    ELECTRONICS, 2021, 10 (05) : 1 - 11
  • [5] Smart Bluetooth Low Energy Security System
    Prakash, Y. W.
    Biradar, Vishakha
    Vincent, Shenil
    Martin, Minto
    Jadhav, Anita
    2017 2ND IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2017, : 2141 - 2146
  • [6] Bluetooth Low Energy Receiver System Design
    Pipino, Alessandra
    Liscidini, Antonio
    Wan, Karen
    Baschirotto, Andrea
    2015 IEEE INTERNATIONAL SYMPOSIUM ON CIRCUITS AND SYSTEMS (ISCAS), 2015, : 465 - 468
  • [7] Platform based on an embedded system to evaluate the intrusion detection system
    Saber, Mohammed
    Emharref, Mohamed
    Bouchentouf, Toumi
    Benazzi, Abdelhamid
    2012 INTERNATIONAL CONFERENCE ON MULTIMEDIA COMPUTING AND SYSTEMS (ICMCS), 2012, : 894 - 899
  • [8] Simulation of watchdog placement for cooperative anomaly detection in Bluetooth Mesh Intrusion Detection System
    Krzyszton, Mateusz
    Marks, Michal
    SIMULATION MODELLING PRACTICE AND THEORY, 2020, 101
  • [9] CLort: High Throughput and Low Energy Network Intrusion Detection on IoT Devices with Embedded GPUs
    Stylianopoulos, Charalampos
    Johansson, Linus
    Olsson, Oskar
    Almgren, Magnus
    SECURE IT SYSTEMS, 2018, 11252 : 187 - 202
  • [10] IN-BUILT INTRUSION DETECTION SYSTEM FOR EMBEDDED PROCESSORS
    Rahimunnisa, K.
    Varkey, Rincy Merrin
    Sureshkumar, S.
    2011 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL, AND SYSTEMS SCIENCES, AND ENGINEERING (CESSE 2011), 2011, : 524 - +