Security and Privacy Threats for Bluetooth Low Energy in IoT and Wearable Devices: A Comprehensive Survey

被引:39
|
作者
Barua, Arup [1 ]
Al Alamin, Md Abdullah [1 ]
Hossain, Md Shohrab [1 ]
Hossain, Ekram [2 ]
机构
[1] Bangladesh Univ Engn & Technol, Dept Comp Sci & Engn, Dhaka 89120, Bangladesh
[2] Univ Manitoba, Dept Elect & Comp Engn, Winnipeg, MB R3T 2N2, Canada
关键词
Security; Bluetooth; Internet of Things; Privacy; Protocols; Wearable computers; Taxonomy; Bluetooth Low Energy (BLE); BLE vulnerabilities; passive eavesdropping; device fingerprinting; privacy attack; IoT; wearable device; security tools; THINGS IOT; INTERNET; BLE; NETWORKS; CHALLENGES; MANAGEMENT; DESIGN; ATTACK;
D O I
10.1109/OJCOMS.2022.3149732
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Bluetooth Low Energy (BLE) has become the de facto communication protocol for the Internet of Things (IoT) and smart wearable devices for its ultra-low energy consumption, ease of development, good enough network coverage, and data transfer speed. Due to the simplified design of this protocol, there have been lots of security and privacy vulnerabilities. As billions of health care, personal fitness wearable, smart lock, industrial automation devices adopt this technology for communication, its vulnerabilities should be dealt with high priority. Some segregated works on BLE were performed focusing on various vulnerabilities, such as the insecure implementation of encryption, device authentication, user privacy, etc. However, there has been no comprehensive survey on the security vulnerabilities of this protocol. In this survey paper, we present a comprehensive taxonomy for the security and privacy issues of BLE. We present possible attack scenarios for different types of vulnerabilities, classify them according to their severity, and list possible mitigation techniques. We also provide case studies regarding how different vulnerabilities can be exploited in real BLE devices.
引用
下载
收藏
页码:251 / 281
页数:31
相关论文
共 50 条
  • [41] Security and privacy issues of handheld and wearable wireless devices
    Di Pietro, R
    Mancini, LV
    COMMUNICATIONS OF THE ACM, 2003, 46 (09) : 74 - 79
  • [42] Advanced Security Testbed Framework for Wearable IoT Devices
    Siboni, Shachar
    Shabtai, Asaf
    Tippenhauer, Nils O.
    Lee, Jemin
    Elovici, Yuval
    ACM TRANSACTIONS ON INTERNET TECHNOLOGY, 2016, 16 (04)
  • [43] A Survey on IoT Security: Application Areas, Security Threats, and Solution Architectures
    Hassija, Vikas
    Chamola, Vinay
    Saxena, Vikas
    Jain, Divyansh
    Goyal, Pranav
    Sikdar, Biplab
    IEEE ACCESS, 2019, 7 : 82721 - 82743
  • [44] Analyzing the Security of Bluetooth Low Energy
    Sevier, Seth
    Tekeoglu, Ali
    2019 INTERNATIONAL CONFERENCE ON ELECTRONICS, INFORMATION, AND COMMUNICATION (ICEIC), 2019, : 568 - 572
  • [45] Systematically Evaluating Security and Privacy for Consumer IoT Devices
    Loi, Franco
    Sivanathan, Arunan
    Gharakheili, Hassan Habibi
    Radford, Adam
    Sivaraman, Vijay
    PROCEEDINGS OF THE 2017 WORKSHOP ON INTERNET OF THINGS SECURITY AND PRIVACY (IOT S&P'17), 2017, : 1 - 6
  • [46] An Experimental Framework for Investigating Security and Privacy of IoT Devices
    Tekeoglu, Ali
    Tosun, Ali Saman
    INTELLIGENT, SECURE, AND DEPENDABLE SYSTEMS IN DISTRIBUTED AND CLOUD ENVIRONMENTS (ISDDC 2017), 2017, 10618 : 63 - 83
  • [47] Smart IoT Devices in the Home Security and Privacy Implications
    Sivaraman, Vijay
    Gharakheili, Hassan Habibi
    Fernandes, Clinton
    Clark, Narelle
    Karliychuk, Tanya
    IEEE TECHNOLOGY AND SOCIETY MAGAZINE, 2018, 37 (02) : 71 - 79
  • [48] Security and Privacy Framework for Ubiquitous Healthcare IoT Devices
    Alkeem, Ebrahim A. L.
    Yeun, Chan Yeob
    Zemerly, M. Jamal
    2015 10TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2015, : 70 - 75
  • [49] A Comprehensive and Systematic Survey on the Internet of Things: Security and Privacy Challenges, Security Frameworks, Enabling Technologies, Threats, Vulnerabilities and Countermeasures
    Obaidat, Muath A.
    Obeidat, Suhaib
    Holst, Jennifer
    Al Hayajneh, Abdullah
    Brown, Joseph
    COMPUTERS, 2020, 9 (02)
  • [50] On the Development of Bluetooth Low Energy Devices
    Mischie, Septimiu
    2018 12TH INTERNATIONAL CONFERENCE ON COMMUNICATIONS (COMM), 2018, : 339 - 344