...
首页> 外文期刊>Journal of medical systems >MARC: A Novel Framework for Detecting MITM Attacks in eHealthcare BLE Systems
【24h】

MARC: A Novel Framework for Detecting MITM Attacks in eHealthcare BLE Systems

机译:MARC:一种用于检测EHealthCare BLE系统中的MITM攻击的新框架

获取原文
获取原文并翻译 | 示例

摘要

Real-time and ubiquitous patient monitoring demands the use of wireless data acquisition through resource constrained medical sensors, mostly configured with No-input No-output (NiNo) capabilities. Bluetooth is one of the most popular and widely adopted means of communicating this sensed information to a mobile terminal. However, over simplified implementations of Bluetooth low energy (BLE) protocol in eHealth sector is susceptible to several wireless attacks, in particular the Man-in-the-Middle (MITM) attack. The issue arises due to a lack of mutual authentication and integrity protection between the communicating devices, which may lead to compromise of confidentiality, availability and even the integrity of this safety-critical information. This research paper presents a novel framework named MARC to detect, analyze, and mitigate Bluetooth security flaws while focusing upon MITM attack against NiNo devices. For this purpose, a comprehensive solution has been proposed, which can detect MITM signatures based upon four novel anomaly detection metrics: analyzing Malicious scan requests, Advertisement intervals, RSSI levels, and Cloned node addresses. The proposed solution has been evaluated through practical implementation and demonstration of different attack scenarios, which show promising results concerning accurate and efficient detection of MITM attacks.
机译:实时和无处不在的患者监控要求使用无线数据采集通过资源受限的医疗传感器,主要配置无输入无输出(NINO)功能。蓝牙是最受欢迎和广泛采用的手段之一,将该感测信息传送到移动终端。然而,在电子健康部门中的蓝牙低能量(BLE)协议的简化实施方案易受多种无线攻击,特别是中间人(MITM)攻击。由于通信设备之间缺乏相互认证和完整性保护,因此可能导致机密性,可用性甚至这种安全关键信息的完整性,因此出现问题。本研究论文提出了一种名为Marc的新颖框架来检测,分析和缓解蓝牙安全缺陷,同时关注MITM攻击对抗NINO设备。为此,提出了一种全面的解决方案,可以根据四种新的异常检测指标检测MITM签名:分析恶意扫描请求,广告间隔,RSSI级别和克隆节点地址。拟议的解决方案已经通过实际实施和示范进行了不同的攻击情景,这表明了有希望的准确和有效地检测MITM攻击的结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号