Security Testbed for Internet-of-Things Devices

被引:94
|
作者
Siboni, Shachar [1 ]
Sachidananda, Vinay [2 ]
Meidan, Yair [1 ]
Bohadana, Michael [1 ]
Mathov, Yael [1 ]
Bhairav, Suhas [2 ]
Shabtai, Asaf [1 ]
Elovici, Yuval [1 ]
机构
[1] Ben Gurion Univ Negev, Dept Software & Informat Syst Engn, Cyber Secur Res Ctr, IL-84105 Beer Sheva, Israel
[2] Singapore Univ Technol & Design, iTrust, Singapore 487372, Singapore
关键词
Internet of Things (IoT); IoT devices; privacy; security; testbed framework; CHALLENGES; PRIVACY;
D O I
10.1109/TR.2018.2864536
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) is a global ecosystem of information and communication technologies aimed at connecting any type of object (thing), at any time, and in any place, to each other and to the Internet. One of the major problems associated with the IoT is the heterogeneous nature of such deployments; this heterogeneity poses many challenges, particularly, in the areas of security and privacy. Specifically, security testing and analysis of IoT devices is considered a very complex task, as different security testing methodologies, including software and hardware security testing approaches, are needed. In this paper, we propose an innovative security testbed framework targeted at IoT devices. The security testbed is aimed at testing all types of IoT devices, with different software/hardware configurations, by performing standard and advanced security testing. Advanced analysis processes based on machine learning algorithms are employed in the testbed in order to monitor the overall operation of the IoT device under test. The architectural design of the proposed security testbed along with a detailed description of the testbed implementation is discussed. The testbed operation is demonstrated on different IoT devices using several specific IoT testing scenarios. The results obtained demonstrate that the testbed is effective at detecting vulnerabilities and compromised IoT devices.
引用
收藏
页码:23 / 44
页数:22
相关论文
共 50 条
  • [1] A Hybrid Testbed for Secure Internet-of-Things
    Arseni, Stefan-Ciprian
    Vulpe, Alexandru
    Halunga, Simona
    Fratu, Octavian
    [J]. FUTURE ACCESS ENABLERS FOR UBIQUITOUS AND INTELLIGENT INFRASTRUCTURES, FABULOUS 2017, 2018, 241 : 3 - 8
  • [2] An Internet-of-things Enabled Smart Manufacturing Testbed
    Shah, Devarshi
    Wang, Jin
    He, Q. Peter
    [J]. IFAC PAPERSONLINE, 2019, 52 (01): : 562 - 567
  • [3] Capacity of blockchain based Internet-of-Things: Testbed and analysis
    Wang, Xu
    Yu, Guangsheng
    Zha, Xuan
    Ni, Wei
    Liu, Ren Ping
    Guo, Y. Jay
    Zheng, Kangfeng
    Niu, Xinxin
    [J]. INTERNET OF THINGS, 2019, 8
  • [4] Biometrics for Internet-of-Things Security: A Review
    Yang, Wencheng
    Wang, Song
    Sahri, Nor Masri
    Karie, Nickson M.
    Ahmed, Mohiuddin
    Valli, Craig
    [J]. SENSORS, 2021, 21 (18)
  • [5] A Comprehensive Study of Security of Internet-of-Things
    Mosenia, Arsalan
    Jha, Niraj K.
    [J]. IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTING, 2017, 5 (04) : 586 - 602
  • [6] Behavioral fingerprinting of Internet-of-Things devices
    Bezawada, Bruhadeshwar
    Ray, Indrakshi
    Ray, Indrajit
    [J]. WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2021, 11 (01)
  • [7] An Efficient Framework for Security of Internet-of-Things Devices against Malicious Software Updates
    Qureshi, Anam
    Shamsi, Jawwad
    Marvi, Murk
    [J]. JOURNAL OF COMPUTER NETWORKS AND COMMUNICATIONS, 2024, 2024
  • [8] Design and Operation of a Lightweight Educational Testbed for Internet-of-Things Applications
    AbdelHafeez, Mahmoud
    Ahmed, Ali H.
    AbdelRaheem, Mohamed
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (12): : 11446 - 11459
  • [9] Developing a Security Testbed for Industrial Internet of Things
    AL-Hawawreh, Muna
    Sitnikova, Elena
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (07): : 5558 - 5573
  • [10] Learning Internet-of-Things Security "Hands-On"
    Kolias, Constantinos
    Stavrou, Angelos
    Voas, Jeffrey
    Bojanova, Irena
    Kuhn, Richard
    [J]. IEEE SECURITY & PRIVACY, 2016, 14 (01) : 37 - 46