Preventing Attacks on Wireless Networks Using SDN Controlled OODA Loops and Cyber Kill Chains

被引:5
|
作者
Zanna, Paul [1 ]
Radcliffe, Peter [1 ]
Kumar, Dinesh [1 ]
机构
[1] RMIT Univ, Sch Elect & Elect Engn, Melbourne, Vic 3000, Australia
关键词
IEEE; 802; 11; wifi; denial-of-service; security; software defined networking; P4;
D O I
10.3390/s22239481
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
Impersonation-based attacks on wireless networks are easy to perform and can significantly impact network security. Their detection is problematic due to the attacks utilizing legitimate functions. This paper proposes a novel algorithm based on Observe-Orientate-Decide-Act (OODA) loop and Cyber Kill Chain (CKC) strategies to detect and neutralize these attacks. To evaluate this approach, we conducted experiments using four attack methods on a wireless router equivalent device, five wireless client devices, and two attack devices. The system employs a Radio Frequency (RF) device identification system and attack state machine implemented using a Software Defined Networking (SDN) architecture and the P4 programming language. The technique remains compliant with the IEEE 802.11 standard and requires no client-side modifications. The results show that the RF section detected 97.5% (average) of impersonated frames, and the overall method neutralized all attacks in the four attack scenarios. This outcome demonstrates that this technique, built on the OODA loops and CKC methodology, using SDN architecture and P4, is suitable for real-time detection and prevention of wireless impersonation attacks.
引用
收藏
页数:17
相关论文
共 50 条
  • [1] Preventing Wormhole Attacks in Wireless Mesh Networks
    Luan, Liangyu
    Fu, Yingfang
    Xiao, Peng
    Peng, Lingxi
    [J]. COMPUTER-AIDED DESIGN, MANUFACTURING, MODELING AND SIMULATION III, 2014, 443 : 440 - +
  • [2] Probability Analysis of Successful Cyber Attacks in SDN-based Networks
    Hajizadeh, Mehrdad
    Phan, Trung V.
    Bauschert, Thomas
    [J]. 2018 IEEE CONFERENCE ON NETWORK FUNCTION VIRTUALIZATION AND SOFTWARE DEFINED NETWORKS (NFV-SDN), 2018,
  • [3] Preventing Denial of Service Attacks in Wireless Sensor Networks
    Mansouri, Djamel
    Mokddad, Lynda
    Ben-othman, Jalel
    Ioualalen, Malika
    [J]. 2015 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2015, : 3014 - 3019
  • [4] Detecting and preventing Sybil attacks in wireless sensor networks
    Wadii, Jlassi
    Rim, Haddad
    Ridha, Bouallegue
    [J]. 2019 IEEE 19TH MEDITERRANEAN MICROWAVE SYMPOSIUM (MMS 2019), 2019,
  • [5] Detecting and Preventing DDoS Attacks in SDN-Based Data Center Networks
    Lin, Po-Ching
    Hsu, Yu-Ting
    Hwang, Ren-Hung
    [J]. CLOUD COMPUTING AND SECURITY, PT II, 2017, 10603 : 50 - 61
  • [6] A Scheme for Preventing Denial of Service Attacks on Wireless Sensor Networks
    Gill, Khusvinder
    Yang, Shuang-Hua
    [J]. IECON: 2009 35TH ANNUAL CONFERENCE OF IEEE INDUSTRIAL ELECTRONICS, VOLS 1-6, 2009, : 2455 - +
  • [7] Preventing DNS Amplification Attacks Using the History of DNS Queries with SDN
    Kim, Soyoung
    Lee, Sora
    Cho, Geumhwan
    Ahmed, Muhammad Ejaz
    Jeong, Jaehoon
    Kim, Hyoungshick
    [J]. COMPUTER SECURITY - ESORICS 2017, PT II, 2017, 10493 : 135 - 152
  • [8] Preventing Attacks and Detecting Intruder for Secured Wireless Sensor Networks
    Kalnoor, Gauri
    Agarkhed, Jayashree
    [J]. PROCEEDINGS OF THE 2016 IEEE INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, SIGNAL PROCESSING AND NETWORKING (WISPNET), 2016, : 1062 - 1067
  • [9] A Scrutinized study on DoS attacks in Wireless Sensor Networks and need of SDN in Mitigating DoS attacks
    Sarkunavathi, A.
    Srinivasan, V
    [J]. 2021 INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATION AND INFORMATICS (ICCCI), 2021,
  • [10] A Novel Scheme for Preventing Wormhole Attacks in Wireless Ad Hoc Networks
    Shi, Fei
    Song, JooSeok
    Liu, Weijie
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INTERNET TECHNOLOGY AND SECURITY (ITS 2010), 2010, : 15 - 20