首页> 外文会议>Irish Signals and Systems Conference >A ZigBee honeypot to assess IoT cyberattack behaviour
【24h】

A ZigBee honeypot to assess IoT cyberattack behaviour

机译:用于评估IoT网络攻击行为的ZigBee蜜罐

获取原文

摘要

Wireless Personal Area Networks (WPAN) allow for the implementation of applications such as home automation, remote control services, near-field technologies and personal health care management. Security is a critical requirement of the standards and protocols for these environments. One suite of layered protocols within WPAN is ZigBee. ZigBee is a low bit rate protocol utilised in Wireless Sensor Networks (WSN). Attacks such as physical, crypto key interception, injection and replay are perpetrated on ZigBee networks. These attacks can be instigated and controlled within the physical ZigBee WSN location or via a gateway. This paper creates a honeypot that simulates a ZigBee gateway. It is designed to assess the presence of ZigBee attack intelligence on a SSH attack vector. It captures all attack traffic for retrospective analysis. It sandboxes attacks of interest to determine if any attempts are targeting ZigBee specifically. Finally it concludes that all captured mass attacks are mainstream DDoS and bot malware, whereas individual attackers where attracted to and interacted with the ZigBee simulated Honeypot.
机译:无线个人局域网(WPAN)允许实施诸如家庭自动化,远程控制服务,近场技术和个人医疗保健管理之类的应用程序。对于这些环境,安全性是对标准和协议的关键要求。 WPAN中的一组分层协议是ZigBee。 ZigBee是无线传感器网络(WSN)中使用的低比特率协议。 ZigBee网络上进行了诸如物理,加密密钥拦截,注入和重播之类的攻击。可以在ZigBee WSN物理位置或通过网关来激发和控制这些攻击。本文创建了一个模拟ZigBee网关的蜜罐。它旨在评估SSH攻击媒介上ZigBee攻击情报的存在。它捕获所有攻击流量以进行回顾分析。它会将感兴趣的攻击沙盒化,以确定是否有任何尝试专门针对ZigBee。最后,得出的结论是,所有捕获的大规模攻击都是主流的DDoS和bot恶意软件,而单个攻击者被ZigBee模拟的Honeypot吸引并与之交互。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号