OASIS: An Intrusion Detection System Embedded in Bluetooth Low Energy Controllers

被引:0
|
作者
Cayre, Romain [1 ,2 ]
Nicomette, Vincent [3 ]
Auriol, Guillaume [3 ]
Kaaniche, Mohamed [4 ]
Francillon, Aurelien [1 ]
机构
[1] EURECOM, Sophia Antipolis, France
[2] Apsys Lab, Paris, France
[3] Univ Toulouse, INSA, LAAS, Toulouse, France
[4] CNRS, LAAS, Toulouse, France
关键词
Intrusion Detection; Bluetooth; Controllers; Instrumentation; PLACEMENT;
D O I
10.1145/3634737.3645004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Bluetooth Low Energy has established itself as one of the central protocols of the Internet of Things. Its many features (mobility, low energy consumption) make it an attractive protocol for smart devices. However, numerous critical vulnerabilities affecting BLE have been made public in recent years, some of which are linked to the protocol's design itself. The impossibility of correcting these vulnerabilities without affecting the specification requires the development of effective intrusion detection systems, enabling the detection and prevention of these threats. Unfortunately, the protocol relies on peer-to-peer communications and introduces many complex and dynamic mechanisms (e.g., channel hopping), making monitoring complex, costly and limited. Existing intrusion detection approaches lack flexibility, are limited in scope and introduce high deployment costs. In this paper, we explore a novel approach consisting in embedding an intrusion detection system directly within BLE controllers. This strategic position tackles these challenges by enabling a more advanced analysis and instrumentation of the protocol and opens the way to new defensive applications. We propose OASIS, a framework for injecting detection heuristics into controllers' firmwares in a generic way without affecting the normal operation of the protocol stack. It can be deployed in various contexts during the life cycle of a device, from the chip manufacturer to a software developer making use of proprietary components, or even in a full black box context by a security analyst to harden a commercial product. We describe its modular architecture and present its implementation within five of the most popular BLE chips from three different manufacturers, deployed in billions of devices and embedding heterogeneous protocol stacks. We present five modules for critical low-level protocol attack detection. We show that OASIS has a low impact on the controller performance (power, timing, memory) and evaluate its usage in a real-world setting.
引用
收藏
页码:700 / 715
页数:16
相关论文
共 50 条
  • [21] Bluetooth Low Energy Based Motion Sensing System
    Zhang, Menghan
    Xia, Weiwei
    Shen, Lianfeng
    2014 SIXTH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS AND SIGNAL PROCESSING (WCSP), 2014,
  • [22] Indoor Positioning System using Bluetooth Low Energy
    Kalbandhe, Ankush A.
    Patil, Shailaja. C.
    2016 INTERNATIONAL CONFERENCE ON COMPUTING, ANALYTICS AND SECURITY TRENDS (CAST), 2016, : 451 - 455
  • [23] A Bluetooth Low Energy Implantable Glucose Monitoring System
    Ali, Mai
    Albasha, Lutfi
    Al-Nashash, Hasan
    2011 8TH EUROPEAN RADAR CONFERENCE, 2011, : 377 - 380
  • [24] Energy Efficiency of Embedded Controllers
    Engin, Mustafa
    2019 8TH MEDITERRANEAN CONFERENCE ON EMBEDDED COMPUTING (MECO), 2019, : 175 - 178
  • [25] Design and implementation of an embedded intrusion detection system for wireless applications
    Ali, Q. I.
    Iazim, S.
    IET INFORMATION SECURITY, 2012, 6 (03) : 171 - 182
  • [26] Embedded Vision based Automotive Interior Intrusion Detection System
    Cai, Haibin
    Lee, Donghee
    Hwang, Joonkoo
    Fang, Yinfeng
    Li, Song
    Liu, Honghai
    2017 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2017, : 2909 - 2914
  • [27] IMPLEMENTATION OF THE FPGA BASED PROGRAMMABLE EMBEDDED INTRUSION DETECTION SYSTEM
    Tuncer, Taner
    Tatar, Yetkin
    JOURNAL OF THE FACULTY OF ENGINEERING AND ARCHITECTURE OF GAZI UNIVERSITY, 2012, 27 (01): : 59 - 69
  • [28] A Host Intrusion Detection System architecture for embedded industrial devices
    Martinez, Cyntia Vargas
    Vogel-Heuser, Birgit
    JOURNAL OF THE FRANKLIN INSTITUTE-ENGINEERING AND APPLIED MATHEMATICS, 2021, 358 (01): : 210 - 236
  • [29] Bluetooth Low Energy based Occupancy Detection for Emergency Management
    Filippoupolitis, Avgoustinos
    Oliff, William
    Loukas, George
    2016 15TH INTERNATIONAL CONFERENCE ON UBIQUITOUS COMPUTING AND COMMUNICATIONS AND 2016 INTERNATIONAL SYMPOSIUM ON CYBERSPACE AND SECURITY (IUCC-CSS), 2016, : 31 - 38
  • [30] Bicycle Mode Activity Detection with Bluetooth Low Energy Beacons
    Ferreira, Paulo
    Zabolotny, Andriy
    Barret, Joao
    2019 IEEE 18TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2019, : 335 - 338