ARGUS: Context-Based Detection of Stealthy IoT Infiltration Attacks

被引:0
|
作者
Rieger, Phillip [1 ]
Chilese, Marco [1 ]
Mohamed, Reham [1 ]
Miettinen, Markus [1 ]
Fereidooni, Hossein [1 ]
Sadeghi, Ahmad-Reza [1 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
基金
欧盟地平线“2020”;
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
IoT application domains, device diversity and connectivity are rapidly growing. IoT devices control various functions in smart homes and buildings, smart cities, and smart factories, making these devices an attractive target for attackers. On the other hand, the large variability of different application scenarios and inherent heterogeneity of devices make it very challenging to reliably detect abnormal IoT device behaviors and distinguish these from benign behaviors. Existing approaches for detecting attacks are mostly limited to attacks directly compromising individual IoT devices, or, require predefined detection policies. They cannot detect attacks that utilize the control plane of the IoT system to trigger actions in an unintended/malicious context, e.g., opening a smart lock while the smart home residents are absent. In this paper, we tackle this problem and propose ARGUS, the first self-learning intrusion detection system for detecting contextual attacks on IoT environments, in which the attacker maliciously invokes IoT device actions to reach its goals. ARGUS monitors the contextual setting based on the state and actions of IoT devices in the environment. An unsupervised Deep Neural Network (DNN) is used for modeling the typical contextual device behavior and detecting actions taking place in abnormal contextual settings. This unsupervised approach ensures that ARGUS is not restricted to detecting previously known attacks but is also able to detect new attacks. We evaluated ARGUS on heterogeneous real-world smart-home settings and achieve at least an F1-Score of 99.64% for each setup, with a false positive rate (FPR) of at most 0.03%.
引用
收藏
页码:4301 / 4318
页数:18
相关论文
共 50 条
  • [1] Targeted Context-Based Attacks on Trust Management Systems in IoT
    Lewis, Cody
    Li, Nan
    Varadharajan, Vijay
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (14) : 12186 - 12203
  • [2] Timely Detection and Mitigation of Stealthy DDoS Attacks Via IoT Networks
    Doshi, Keval
    Yilmaz, Yasin
    Uludag, Suleyman
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (05) : 2164 - 2176
  • [3] Context-based Security and Privacy for Healthcare IoT
    Alagar, Vangalur
    Alsaig, Alaa
    Ormandjieva, Olga
    Wan, Kaiyu
    2018 IEEE INTERNATIONAL CONFERENCE ON SMART INTERNET OF THINGS (SMARTIOT 2018), 2018, : 122 - 128
  • [4] Context-Based Confidentiality Analysis for Industrial IoT
    Boltz, Nicolas
    Walter, Maximilian
    Heinrich, Robert
    2020 46TH EUROMICRO CONFERENCE ON SOFTWARE ENGINEERING AND ADVANCED APPLICATIONS (SEAA 2020), 2020, : 589 - 596
  • [5] Mitigating service-oriented attacks using context-based trust for smart cities in IoT networks
    Altaf, Ayesha
    Abbas, Haider
    Iqbal, Faiza
    Khan, Malik Muhammad Zaki Murtaza
    Rauf, Abdul
    Kanwal, Tehsin
    JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 115
  • [6] Mitigating service-oriented attacks using context-based trust for smart cities in IoT networks
    Altaf, Ayesha
    Abbas, Haider
    Iqbal, Faiza
    Khan, Malik Muhammad Zaki Murtaza
    Rauf, Abdul
    Kanwal, Tehsin
    Abbas, Haider (dr.h.abbas@ieee.org), 2021, Elsevier B.V. (115)
  • [7] Detection of Stealthy TCP-based DoS Attacks
    Aqil, Azeem
    Atya, Ahmed O. F.
    Jaeger, Trent
    Krishnamurthy, Srikanth V.
    Levitt, Karl
    McDaniel, Patrick D.
    Rowe, Jeff
    Swami, Ananthram
    2015 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM 2015), 2015, : 348 - 353
  • [8] A Context-based Future Network Infrastructure for IoT Services
    Chin, Won Sang
    Kim, Hyun-soo
    Heo, Young Ju
    Jang, Ju Wook
    10TH INTERNATIONAL CONFERENCE ON FUTURE NETWORKS AND COMMUNICATIONS (FNC 2015) / THE 12TH INTERNATIONAL CONFERENCE ON MOBILE SYSTEMS AND PERVASIVE COMPUTING (MOBISPC 2015) AFFILIATED WORKSHOPS, 2015, 56 : 266 - 270
  • [9] Towards an Ontology for IoT Context-Based Security Evaluation
    Gonzalez-Gil, Pedro
    Skarmeta, Antonio F.
    Antonio Martinez, Juan
    2019 GLOBAL IOT SUMMIT (GIOTS), 2019,
  • [10] A Context-based Strategy for SLA Negotiation in the IoT Environment
    Li, Fan
    Clarke, Siobhan
    2019 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS WORKSHOPS (PERCOM WORKSHOPS), 2019, : 208 - 213