首页> 外文OA文献 >Man-in-the-Middle Attack and its Countermeasure in Bluetooth Secure Simple Pairing
【2h】

Man-in-the-Middle Attack and its Countermeasure in Bluetooth Secure Simple Pairing

机译:蓝牙安全简单配对中的中间人攻击及其对策

摘要

With the development of more types of devices which have Bluetooth as a primary option to communicate, the importance of secure communication is growing. Bluetooth provides a short range wireless communication between devices making convenient for users and thus eliminating the need for messy cables.ududThe proliferation of the Bluetooth devices in the workplace exposes organizations to security risks. Bluetooth technology and associated devices are susceptible to general wireless networking threats, such as denial of service attack, eavesdropping, man-in-the-middle attacks, message modification, and resource misappropriation. Preventing unauthorized users from secure communication is a challenge to the pairing process.ududThe Man-in-the-Middle attack is based on sending random signals to jam the physical layer of legitimate user and then by falsification of information sent during the input/output capabilities exchange; also the fact that the security of the protocol is likely to be limited by the capabilities of the least powerful or the least secure device type. In addition, proposed a countermeasure that render the attack impractical. We have shown that, the proposed method can withstand the MITM attack and achieving all the security needs like authenticity, confidentiality, integrity and availability as well as it is an improvement to the existing Bluetooth secure simple pairing in order to make it more secure.
机译:随着越来越多的类型的设备将蓝牙作为主要的通信选项,安全通信的重要性越来越高。蓝牙提供了设备之间的短距离无线通信,为用户提供了便利,从而消除了对凌乱电缆的需求。 ud ud工作场所中蓝牙设备的普及使组织面临安全风险。蓝牙技术和相关设备容易受到一般的无线网络威胁,例如拒绝服务攻击,窃听,中间人攻击,消息修改和资源盗用。防止未经授权的用户进行安全通信是配对过程的一个挑战。 ud ud“中间人”攻击基于发送随机信号阻塞合法用户的物理层,然后通过伪造输入过程中发送的信息来进行/输出能力交换;协议的安全性也可能受到功能最弱或安全性最低的设备类型的限制。另外,提出了使攻击变得不切实际的对策。我们已经表明,所提出的方法可以抵御MITM攻击并实现所有安全需求,例如真实性,机密性,完整性和可用性,并且它是对现有蓝牙安全简单配对的改进,以使其更加安全。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号