首页> 外文期刊>Computers & Security >Find me a safe zone: A countermeasure for channel state information based attacks
【24h】

Find me a safe zone: A countermeasure for channel state information based attacks

机译:找我一个安全区:基于通道状态信息的攻击的对策

获取原文
获取原文并翻译 | 示例

摘要

Recently, channel state information (CSI) is shown to be an effective side-channel to perform attacks in public environments. Prior work has demonstrated that by analyzing how the CSI measurements of the wireless signal are affected by the mobile user's finger movements or gestures, an attacker can recover the user's input with a high success rate. Furthermore, the setup of this new attack is trivial, where the adversary only needs to place one or two malicious wireless devices near the target user. It would be difficult for many users to identify the nearby malicious devices while they want to continue to use mobile applications in public places. This dilemma makes protection of CSI-based attacks an urgent need.This article presents the first countermeasure for CSI-based attacks. Our key insight is that the success of any CSI-based attack requires high-quality CSI measurements; and we can significantly reduce the risk of information leakage by directing the user to a nearby location where the CSI readings are inherently noisy. To this end, we develop a regression based method to assess the risk of CSI-based attacks and exploit a well-established localization technique to identify potential malicious wireless devices. We then use this information to guide the user to a safe zone. We evaluate our approach by applying it to protect pattern lock and keystrokes in various indoor and outdoor environments. Experimental results show that our approach can effectively protect mobile users against CSI-based attacks. (C) 2018 Elsevier Ltd. All rights reserved.
机译:最近,信道状态信息(CSI)被证明是在公共环境中执行攻击的有效副信道。先前的工作表明,通过分析无线信号的CSI测量如何受到移动用户的手指移动或手势的影响,攻击者可以以很高的成功率恢复用户的输入。此外,这种新攻击的设置很简单,对手只需要在目标用户附近放置一个或两个恶意无线设备即可。许多用户想要继续在公共场所使用移动应用程序时,很难识别附近的恶意设备。这一难题使保护基于CSI的攻击成为当务之急。本文介绍了基于CSI的攻击的第一个对策。我们的主要见解是,任何基于CSI的攻击成功都需要进行高质量的CSI测量。而且,通过将用户引导至CSI读数固有噪声的附近位置,我们可以大大降低信息泄漏的风险。为此,我们开发了一种基于回归的方法来评估基于CSI的攻击风险,并利用一种完善的定位技术来识别潜在的恶意无线设备。然后,我们使用此信息将用户引导至安全区域。我们通过将其应用于各种室内和室外环境中的模式锁定和击键来评估我们的方法。实验结果表明,我们的方法可以有效地保护移动用户免受基于CSI的攻击。 (C)2018 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号