OASIS: An Intrusion Detection System Embedded in Bluetooth Low Energy Controllers

被引:0
|
作者
Cayre, Romain [1 ,2 ]
Nicomette, Vincent [3 ]
Auriol, Guillaume [3 ]
Kaaniche, Mohamed [4 ]
Francillon, Aurelien [1 ]
机构
[1] EURECOM, Sophia Antipolis, France
[2] Apsys Lab, Paris, France
[3] Univ Toulouse, INSA, LAAS, Toulouse, France
[4] CNRS, LAAS, Toulouse, France
关键词
Intrusion Detection; Bluetooth; Controllers; Instrumentation; PLACEMENT;
D O I
10.1145/3634737.3645004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Bluetooth Low Energy has established itself as one of the central protocols of the Internet of Things. Its many features (mobility, low energy consumption) make it an attractive protocol for smart devices. However, numerous critical vulnerabilities affecting BLE have been made public in recent years, some of which are linked to the protocol's design itself. The impossibility of correcting these vulnerabilities without affecting the specification requires the development of effective intrusion detection systems, enabling the detection and prevention of these threats. Unfortunately, the protocol relies on peer-to-peer communications and introduces many complex and dynamic mechanisms (e.g., channel hopping), making monitoring complex, costly and limited. Existing intrusion detection approaches lack flexibility, are limited in scope and introduce high deployment costs. In this paper, we explore a novel approach consisting in embedding an intrusion detection system directly within BLE controllers. This strategic position tackles these challenges by enabling a more advanced analysis and instrumentation of the protocol and opens the way to new defensive applications. We propose OASIS, a framework for injecting detection heuristics into controllers' firmwares in a generic way without affecting the normal operation of the protocol stack. It can be deployed in various contexts during the life cycle of a device, from the chip manufacturer to a software developer making use of proprietary components, or even in a full black box context by a security analyst to harden a commercial product. We describe its modular architecture and present its implementation within five of the most popular BLE chips from three different manufacturers, deployed in billions of devices and embedding heterogeneous protocol stacks. We present five modules for critical low-level protocol attack detection. We show that OASIS has a low impact on the controller performance (power, timing, memory) and evaluate its usage in a real-world setting.
引用
收藏
页码:700 / 715
页数:16
相关论文
共 50 条
  • [41] Bluetooth-Low-Energy-Based Fall Detection and Warning System for Elderly People in Nursing Homes
    De Raeve, Nick
    Shahid, Adnan
    De Schepper, Matthias
    De Poorter, Eli
    Moerman, Ingrid
    Verhaevert, Jo
    Van Torre, Patrick
    Rogier, Hendrik
    JOURNAL OF SENSORS, 2022, 2022
  • [42] A Scalable Bluetooth Low Energy Design Model for Sensor Detection for an Indoor Real Time Location System
    Pancham, Jay
    Millham, Richard
    Fong, Simon James
    COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2018, PT IV, 2018, 10963 : 317 - 330
  • [43] Low Latency Audio Coder Design for Bluetooth and Bluetooth Low Energy
    Moon, Hangil
    Lee, Namsuk
    Kim, Hyunwook
    Lee, Sanghoon
    2015 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2015, : 138 - 141
  • [44] A water-powered Energy Harvesting system with Bluetooth Low Energy interface
    Kroener, M.
    Allinger, K.
    Berger, M.
    Grether, E.
    Wieland, F.
    Heller, S.
    Woias, P.
    16TH INTERNATIONAL CONFERENCE ON MICRO AND NANOTECHNOLOGY FOR POWER GENERATION AND ENERGY CONVERSION APPLICATIONS (POWERMEMS 2016), 2016, 773
  • [45] Analysis of Bluetooth Low Energy Detection Range Improvements for Indoor Environments
    Pancham, Jay
    Millham, Richard
    Fong, Simon James
    COMPUTATIONAL SCIENCE - ICCS 2018, PT III, 2018, 10862 : 598 - 609
  • [46] Wireless Network with Bluetooth Low Energy Beacons for Vehicle Detection and Classification
    Bernas, Marcin
    Placzek, Bartlomiej
    Korski, Wojciech
    COMPUTER NETWORKS, CN 2018, 2018, 860 : 429 - 444
  • [47] Secure Bluetooth Communication in Smart Healthcare Systems: A Novel Community Dataset and Intrusion Detection System
    Zubair, Mohammed
    Ghubaish, Ali
    Unal, Devrim
    Al-Ali, Abdulla
    Reimann, Thomas
    Alinier, Guillaume
    Hammoudeh, Mohammad
    Qadir, Junaid
    SENSORS, 2022, 22 (21)
  • [48] Joint Viterbi detection and decoding algorithm for bluetooth low energy systems
    Park, Chulhyun
    Jung, Yongchul
    Kim, Jihoon
    Jung, Yunho
    ELECTRONICS LETTERS, 2020, 56 (06) : 310 - 312
  • [49] Occupancy Detection by Multi-Power Bluetooth Low Energy Beaconing
    Barsocchi, Paolo
    Crivello, Antonino
    Girolami, Michele
    Mavilia, Fabio
    Palumbo, Filippo
    2017 INTERNATIONAL CONFERENCE ON INDOOR POSITIONING AND INDOOR NAVIGATION (IPIN), 2017,
  • [50] A Study of Bluetooth Low Energy Performance for Human Proximity Detection in the Workplace
    Montanari, Alessandro
    Nawaz, Sarfraz
    Mascolo, Cecilia
    Sailer, Kerstin
    2017 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS (PERCOM), 2017,