Automated Security Audit Testbed For IP-Based IoT Devices Without Physical Access

被引:1
|
作者
Kumar, Ashutosh [1 ]
Peshvani, Brijesh [1 ]
Venkatesan, S. [1 ]
Kumar, Manish [1 ]
Yadav, Suneel [1 ]
Shukla, Sandeep Kumar [2 ]
机构
[1] Indian Inst Informat Technol Allahabad, Dept Informat Technol, Allahabad, Uttar Pradesh, India
[2] Indian Inst Technol Kanpur, Dept Comp Sci & Engn, Kanpur, Uttar Pradesh, India
来源
2023 10TH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY, IOTSMS | 2023年
关键词
IoT; Security Testbed; Penetration Testing; Reconnaissance; Device Security; INTERNET; FRAMEWORK;
D O I
10.1109/IOTSMS59855.2023.10325768
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The need for the Internet of Things (IoT) is increasing, and various manufacturers produce devices to cater to the demand. The manufacturers produce the device by considering the performance and cost but do not concentrate on security. Hence, security auditing of the device is required before or while using it in a real-time environment. This paper proposes a security audit testbed to test the security of IoT devices from protocol to the application perspective without accessing the device physically. The proposed testbed includes reconnaissance and penetration testing to identify the vulnerability of the devices. The audit results of multiple IoT devices are presented to show the impact of the proposed testbed in identifying the vulnerabilities. The comparison of security audit testbeds shows that the proposed testbed has more coverage to provide better audit results than others.
引用
收藏
页码:96 / 103
页数:8
相关论文
共 50 条
  • [31] A Testbed for Implementing Lightweight Physical Layer Security in an IoT-based Health Monitoring System
    Hussain, Ahmed Mohamed
    Abualsaud, Khalid
    Yaacoub, Elias
    Khattab, Tamer
    Gehani, Abdurrazzak
    Guizani, Mohsen
    IWCMC 2021: 2021 17TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2021, : 486 - 491
  • [32] Security with IP Address Assignment and Spoofing for Smart IOT Devices
    Rajashree, S.
    Soman, K. S.
    Shah, Pritam Gajkumar
    2018 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2018, : 1914 - 1918
  • [33] Security architecture for IP-based multi-service networks
    Balyan, Avneesh
    Loganathan, Karthic
    Sripathi, Sridhar
    BELL LABS TECHNICAL JOURNAL, 2006, 11 (01) : 59 - 78
  • [34] Research and Implementation on IP-Based Mobile Internet Access Authentication
    Mei, Yan
    Zhang, Yuejin
    ASIA-PACIFIC YOUTH CONFERENCE ON COMMUNICATION TECHNOLOGY 2010 (APYCCT 2010), 2010, : 8 - 11
  • [35] Achieving seamless mobility in IP-based radio access networks
    Leggio, S
    Manner, J
    Raatikainen, K
    IEEE WIRELESS COMMUNICATIONS, 2005, 12 (01) : 54 - 59
  • [36] IP-Based radio access network implementation cost vs. network security trade-off
    Park, Seyong
    Salvarani, Alexandro
    BELL LABS TECHNICAL JOURNAL, 2007, 12 (03) : 95 - 99
  • [37] SECURITY OF IOT DEVICES BASED ON LTE
    Zidkova, Nikola
    Maryska, Milos
    DIGITALIZED ECONOMY, SOCIETY AND INFORMATION MANAGEMENT (IDIMT-2020), 2020, 49 : 325 - 332
  • [38] Industrial Wireless IP-Based Cyber-Physical Systems
    Watteyne, Thomas
    Handziski, Vlado
    Vilajosana, Xavier
    Duquennoy, Simon
    Hahm, Oliver
    Baccelli, Emmanuel
    Wolisz, Adam
    PROCEEDINGS OF THE IEEE, 2016, 104 (05) : 1025 - 1038
  • [39] Physical Unclonable Function Based Hardware Security for Resource Constraint IoT Devices
    Ahmed, Muhammed Kawser
    Yanambaka, Venkata P.
    Abdelgawad, Ahmed
    Yelamarthi, Kumar
    2020 IEEE 6TH WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2020,
  • [40] SSL-based Lightweight Security of IP-based Wireless Sensor Networks
    Jung, Wooyoung
    Hong, Sungmin
    Ha, Minkeun
    Kim, Young-Joo
    Kim, Daeyoung
    2009 INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS WORKSHOPS: WAINA, VOLS 1 AND 2, 2009, : 1112 - 1117