首页> 外文期刊>Computers & Security >IoTChecker: A data-driven framework for security analytics of Internet of Things configurations
【24h】

IoTChecker: A data-driven framework for security analytics of Internet of Things configurations

机译:IoTChecker:用于物联网配置安全性分析的数据驱动框架

获取原文
获取原文并翻译 | 示例

摘要

The advent of the Internet of Things (IoT) has revolutionized networks by transforming legacy dumb devices into smart connected "things"; observing, interacting and impacting the environment with minimal human intervention. These features, while promising a variety of innovative solutions and business benefits, are vulnerable to a host of new threat vectors and security risks. A typical IoT network comprises thousands of IoT devices using heterogeneous protocols, having varying resources, complex interdependencies and diverse networking and security requirements. The configuration data of IoT systems is mostly unstructured, lacking machine interpretable semantics and thus, traditional analysis techniques cannot tackle the IoT-specific configuration challenges of scalability, interoperability and security. In this paper, we present IoTChecker, a novel data-driven framework to semantically model IoT configurations and then employ that model to automatically arrest security configuration anomalies and analyze IoT-specific threat vectors. The approach leverages a combination of newly constructed as well as extended and aligned versions of existing ontologies. Configuration analytics are performed automatically by describing the context of complex IoT interactions and dependencies through rules-supported reasoning and queries. The evaluation involves ontology-based security classification of 954 real-world IoT products and security analysis of their practically-deployed system configurations. Our automated approach has proven to be scalable, easily manageable, formally verifiable and free from errors induced by tedious manual configurations.
机译:物联网(IoT)的出现通过将传统的哑设备转变为智能连接的“事物”,彻底改变了网络。只需最少的人工干预即可观察,互动和影响环境。这些功能虽然有望带来各种创新解决方案和商业利益,但很容易受到许多新的威胁媒介和安全风险的影响。一个典型的物联网网络包括数千个使用异构协议的物联网设备,这些设备具有变化的资源,复杂的相互依存关系以及多样化的网络和安全要求。物联网系统的配置数据大多是非结构化的,缺乏机器可解释的语义,因此,传统的分析技术无法应对可扩展性,互操作性和安全性的物联网特定配置挑战。在本文中,我们介绍了IoTChecker,这是一种新型的数据驱动框架,可对IoT配置进行语义建模,然后使用该模型自动阻止安全配置异常并分析IoT特定的威胁向量。该方法利用了现有本体的新构造以及扩展和对齐版本的组合。通过使用规则支持的推理和查询描述复杂的物联网交互和依赖关系的上下文,可以自动执行配置分析。评估涉及954种现实物联网产品的基于本体的安全性分类,以及对其实际部署的系统配置的安全性分析。我们的自动化方法已被证明具有可扩展性,易于管理,形式上可验证且不会因繁琐的手动配置而引起的错误。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号