BULWARK: A Framework to Store IoT Data in User Accounts

被引:2
|
作者
Reed, Jeremy Lynn [1 ]
Tosun, Ali Saman [2 ]
机构
[1] Univ Texas San Antonio, Dept Comp Sci, San Antonio, TX 78249 USA
[2] Univ North Carolina Pembroke, Dept Math & Comp Sci, Pembroke, NC 28372 USA
来源
IEEE ACCESS | 2022年 / 10卷
关键词
IoT security; IoT privacy; cloud computing;
D O I
10.1109/ACCESS.2022.3144913
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The explosive growth of the Internet of Things (IoT) devices raises serious concerns for a user's privacy and security because the existing software framework on these devices often support various default features and generate large data sets. Moreover, many IoT devices incorporate a manufacturer-owned cloud-based back-end support to process and store the generated data while simultaneously sharing with third parties. Clearly, in such an industry-driven environment with the desire to use the IoT data as a revenue stream, it is a challenge for users to control IoT data. Device manufacturers utilize an opaque software design where user data is generated and stored with little transparency. Manufacturers use EULAs as a legal construct to protect a manufacturer's legal standing and to explain a device's behavior, however this explanation is vague and lacks the necessary details for a user to determine a device's acceptable use and it has become increasingly difficult for users to secure and maintain their data. Fortunately, as the privacy minded user base of IoT devices grows, the manufacturers will be forced to implement a new framework that can enable users to have more control on the creation of their IoT data, and to store/disseminate such data in a secure and private manner. In this paper, we address this lack of transparency from manufacturers and address the issues of privacy and security by proposing a new framework called Bulwark, for manufacturer use on IoT devices and mobile applications. Proposed framework enables the user to generate and manage a set of data controlling rules, and store the result in their personal cloud account, while providing a dashboard data reporting tool enabling data transparency and supporting good user choices. The user's ability to access, disseminate and secure IoT generated data, is now available within our proposed framework. Using reverse engineering, simulation and implementation of open source solutions, we demonstrate support for a set of common devices. Each device executed the framework, while communicating with a mobile application and cloud services. Rules were generated for each message and telemetry was returned to the mobile application for dashboard rendering. We stored generated data in the cloud using our own account, while maintaining the free tier for each of the cloud services. Network usage increased between 4% and 9% while storage size grew between 0% and 2% larger, as compared to using the device without the framework. Our framework demonstrates support for a multitude of devices, by either open source or support for similar feature sets. This framework is easy to integrate and we anticipate wide spread adoption.
引用
收藏
页码:15619 / 15634
页数:16
相关论文
共 50 条
  • [21] Blockchain based Data Integrity Service Framework for IoT data
    Liu, Bin
    Yu, Xiao Liang
    Chen, Shiping
    Xu, Xiwei
    Zhu, Liming
    2017 IEEE 24TH INTERNATIONAL CONFERENCE ON WEB SERVICES (ICWS 2017), 2017, : 468 - 475
  • [22] Secure Multifactor Remote Access User Authentication Framework for IoT Networks
    Alshahrani, Mohammed Mujib
    CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 68 (03): : 3235 - 3254
  • [23] A User-Centric Privacy Control Framework for Decentralized IoT Platforms
    Tao, Xu
    Zhao, Rui
    Chehida, Salim
    Conzon, Davide
    Ferrera, Enrico
    Bensalem, Saddek
    QUALITY OF INFORMATION AND COMMUNICATIONS TECHNOLOGY, QUATIC 2024, 2024, 2178 : 408 - 415
  • [24] An IoT based framework for user-centric smart building services
    Victoria Moreno, M.
    Zamora, Miguel A.
    Skarmeta, Antonio F.
    INTERNATIONAL JOURNAL OF WEB AND GRID SERVICES, 2015, 11 (01) : 78 - 101
  • [25] User-Centered Broadcasting Service Utilizing Personal Data Store
    Yamakami, Yuki
    Ueno, Mikihiro
    Matsumura, Kinji
    PROCEEDINGS OF THE 2022 ACM INTERNATIONAL CONFERENCE ON INTERACTIVE MEDIA EXPERIENCES, IMX 2022, 2022, : 337 - 342
  • [26] A Hierarchical Futures Data Analysis Framework for Multiple Accounts Detection
    Liu, Yining
    Hu, Tianhua
    2019 IEEE 25TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2019, : 663 - 670
  • [27] e!DAL - a framework to store, share and publish research data
    Daniel Arend
    Matthias Lange
    Jinbo Chen
    Christian Colmsee
    Steffen Flemming
    Denny Hecht
    Uwe Scholz
    BMC Bioinformatics, 15
  • [28] IoT plus Small Data: Transforming In-Store Shopping Analytics & Services
    Radhakrishnan, Meera
    Sen, Sougata
    Vigneshwaran, S.
    Misra, Archan
    Balan, Rajesh
    2016 8TH INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS AND NETWORKS (COMSNETS), 2016,
  • [29] e!DAL - a framework to store, share and publish research data
    Arend, Daniel
    Lange, Matthias
    Chen, Jinbo
    Colmsee, Christian
    Flemming, Steffen
    Hecht, Denny
    Scholz, Uwe
    BMC BIOINFORMATICS, 2014, 15
  • [30] Data Privacy Enhancing in the IoT User/Device Behavior Analytics
    Li, Shancang
    Zhao, Shanshan
    Gope, Prosanta
    Xu, Li Da
    ACM TRANSACTIONS ON SENSOR NETWORKS, 2023, 19 (02)