BARRETT BlockchAin Regulated REmote aTTestation

被引:3
|
作者
Bampatsikos, Michail [1 ]
Ntantogian, Christoforos [2 ]
Xenakis, Christos [2 ]
Thomopoulos, Stelios C. A. [1 ]
机构
[1] Natl Ctr Sci Res Demokritos, Inst Informat & Telecommun, Aghia Paraskevi, Greece
[2] Univ Piraeus, Dept Digital Syst, Piraeus, Attica, Greece
基金
欧盟地平线“2020”;
关键词
Remote Attestation; Blockchain; Ethereum; IoT; Healthcare; Denial of Service; DoS; Internet of Things; Security;
D O I
10.1145/3358695.3361752
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Today, an increasing number of Internet of Things (IoT) healthcare devices, crucial to a person's wellbeing and life, connects to the internet and consequently is exposed to a variety of threats. These devices possess low computational resources, and as a result they cannot use security tools such as antivirus or firewalls. Consequently, they become easy targets for cyberattacks and malware infection, thus putting a person's life at risk. One way to protect these devices from malware infection is Remote Attestation (RA), a process by which a device with low computational power (prover) verifies its internal state to a party with higher computational resources (verifier) upon the latter's request. However, in case the verifier is malicious, it may constantly send numerous requests for RA to a prover to prevent it from performing the functions it was designed for. Thus, keeping it busy and rendering it unusable to its legit users as well as services. In short, the verifier performs a Computational Denial of Service (CDoS) attack against the prover. This paper proposes the BARRETT architecture which uses a Public Ethereum Network (PEN) in conjunction with an RA protocol to protect the prover from CDoS attacks. In particular, the PEN in BARRETT deters CDoS by forcing the verifier to pay a fee in Ether cryptocurrency every time they wish to send an Attestation Request (AR) to a prover. The verifier pays the fee since in BARRETT it can send the AR only via Ethereum transactions. Consequently, any attempt to perform a CDoS becomes prohibitively expensive.
引用
收藏
页码:256 / 262
页数:7
相关论文
共 50 条
  • [1] Exploring Blockchain Based Digital Twins with Remote Attestation
    Jatkola, Kaisa
    Oliver, Ian
    [J]. 37TH ANNUAL EUROPEAN SIMULATION AND MODELLING CONFERENCE 2023, ESM 2023, 2023, : 344 - 351
  • [2] PERMANENT: Publicly Verifiable Remote Attestation for Internet of Things Through Blockchain
    Ankergard, Sigurd Frej Joel Jorgensen
    Dushku, Edlira
    Dragoni, Nicola
    [J]. FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2021, 2022, 13291 : 218 - 234
  • [3] Credibility Attestation of Property Remote Attestation Method
    Cui Yan-Li
    Zhang Xing
    [J]. 2009 SECOND INTERNATIONAL CONFERENCE ON FUTURE INFORMATION TECHNOLOGY AND MANAGEMENT ENGINEERING, FITME 2009, 2009, : 254 - +
  • [4] Principles of remote attestation
    George Coker
    Joshua Guttman
    Peter Loscocco
    Amy Herzog
    Jonathan Millen
    Brian O’Hanlon
    John Ramsdell
    Ariel Segall
    Justin Sheehy
    Brian Sniffen
    [J]. International Journal of Information Security, 2011, 10 : 63 - 81
  • [5] Principles of remote attestation
    Coker, George
    Guttman, Joshua
    Loscocco, Peter
    Herzog, Amy
    Millen, Jonathan
    O'Hanlon, Brian
    Ramsdell, John
    Segall, Ariel
    Sheehy, Justin
    Sniffen, Brian
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2011, 10 (02) : 63 - 81
  • [6] Towards an attestation architecture for blockchain networks
    Hardjono, Thomas
    Smith, Ned
    [J]. World Wide Web, 2021, 24 (05) : 1587 - 1615
  • [7] Towards an attestation architecture for blockchain networks
    Hardjono, Thomas
    Smith, Ned
    [J]. WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS, 2021, 24 (05): : 1587 - 1615
  • [8] Distributed IoT Attestation via Blockchain
    Jenkins, Ira Ray
    Smith, Sean W.
    [J]. 2020 20TH IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING (CCGRID 2020), 2020, : 798 - 801
  • [9] Towards an attestation architecture for blockchain networks
    Thomas Hardjono
    Ned Smith
    [J]. World Wide Web, 2021, 24 : 1587 - 1615
  • [10] On the TOCTOU Problem in Remote Attestation
    Nunes, Ivan De Oliveira
    Jakkamsetti, Sashidhar
    Rattanavipanon, Norrathep
    Tsudik, Gene
    [J]. CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 2921 - 2936