首页> 外文期刊>Quality Control, Transactions >Large-Scale IoT Devices Firmware Identification Based on Weak Password
【24h】

Large-Scale IoT Devices Firmware Identification Based on Weak Password

机译:基于密码弱密码的大型物联网设备固件识别

获取原文
获取原文并翻译 | 示例
           

摘要

The growth of Internet-connected IoT devices brings many security issues, such as DDoS, weak password and embedded malware. The vulnerability analysis is a critical strategy to prevent security issues. Due to technical exclusivity of diverse manufacturers, their firmware is hard to patch timely and respectively. Therefore, the vulnerability of the device is closely related to the device firmware version. The identification of the firmware version is an essential prerequisite for protecting these devices from attack. With the increasing of IoT devices, device firmware identification is still a critical challenge. In this paper, we propose a new firmware identification method by analyzing webpages content directly based on a weak password. We extract the characteristics of the login page to identify the device type and brand, and then use classification and page segmentation to identify the model and firmware version of the device. We evaluated 74,307 devices to verify the effectiveness of our proposed method. Experimental results show that our method achieves an accuracy of 95.97 & x0025;, superior to the other methods.
机译:互联网连接的IOT设备的增长带来了许多安全问题,例如DDOS,弱密码和嵌入恶意软件。漏洞分析是防止安全问题的关键策略。由于各种制造商的技术专用性,他们的固件分别难以及时补丁。因此,该设备的漏洞与设备固件版本密切相关。固件版本的标识是保护这些设备免受攻击的必要前提。随着物联网设备的增加,设备固件识别仍然是一个关键挑战。在本文中,我们通过基于弱密码分析网页内容来提出新的固件识别方法。我们提取登录页面的特性以识别设备类型和品牌,然后使用分类和页面分段来识别设备的模型和固件版本。我们评估了74,307个设备以验证我们提出的方法的有效性。实验结果表明,我们的方法达到了95.97&x0025的精度;优于其他方法。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号