IoT Sentinel: Automated Device-Type Identification for Security Enforcement in IoT
arXiv:1611.04880 · doi:10.1109/ICDCS.2017.283
Abstract
With the rapid growth of the Internet-of-Things (IoT), concerns about the security of IoT devices have become prominent. Several vendors are producing IP-connected devices for home and small office networks that often suffer from flawed security designs and implementations. They also tend to lack mechanisms for firmware updates or patches that can help eliminate security vulnerabilities. Securing networks where the presence of such vulnerable devices is given, requires a brownfield approach: applying necessary protection measures within the network so that potentially vulnerable devices can coexist without endangering the security of other devices in the same network. In this paper, we present IOT SENTINEL, a system capable of automatically identifying the types of devices being connected to an IoT network and enabling enforcement of rules for constraining the communications of vulnerable devices so as to minimize damage resulting from their compromise. We show that IOT SENTINEL is effective in identifying device types and has minimal performance overhead.
References in corpus (2)
Cited by in corpus (42)
- IoT Sentinel: Automated Device-Type Identification for Security Enforcement in IoT
- Machine Learning Based Solutions for Security of Internet of Things (IoT): A Survey
- Securing the Internet of Things in the Age of Machine Learning and Software-defined Networking
- A Taxonomy of Network Threats and the Effect of Current Datasets on Intrusion Detection Systems
- Keeping the Smart Home Private with Smart(er) IoT Traffic Shaping
- Artificial Intelligence Enabled Software Defined Networking: A Comprehensive Overview
- A Survey on Device Behavior Fingerprinting: Data Sources, Techniques, Application Scenarios, and Datasets
- IoT Inspector: Crowdsourcing Labeled Network Traffic from Smart Home Devices at Scale
- IoTDevID: A Behavior-Based Device Identification Method for the IoT
- IoT Device Fingerprint using Deep Learning
- Exploring Edge TPU for Network Intrusion Detection in IoT
- Informing the Design of Privacy-Empowering Tools for the Connected Home
- Anomalous Communications Detection in IoT Networks Using Sparse Autoencoders
- The Threat of Adversarial Attacks on Machine Learning in Network Security -- A Survey
- Is Your Kettle Smarter Than a Hacker? A Scalable Tool for Assessing Replay Attack Vulnerabilities on Consumer IoT Devices
- Deep Complex Networks for Protocol-Agnostic Radio Frequency Device Fingerprinting in the Wild
- The Case for Retraining of ML Models for IoT Device Identification at the Edge
- Mapping the Landscape of Generative AI in Network Monitoring and Management
- How Secure Is Your IoT Network?
- IoT Device Identification Based on Network Traffic Characteristics
- IoT Behavioral Monitoring via Network Traffic Analysis
- Network Traffic Characteristics of IoT Devices in Smart Homes
- IoT Device Identification Based on Network Communication Analysis Using Deep Learning
- DeviceRadar: Online IoT Device Fingerprinting in ISPs using Programmable Switches
- Your Smart Home Can't Keep a Secret: Towards Automated Fingerprinting of IoT Traffic with Neural Networks
- D-Score: An Expert-Based Method for Assessing the Detectability of IoT-Related Cyber-Attacks
- Locality Sensitive Hashing for Network Traffic Fingerprinting
- IoTGaze: IoT Security Enforcement via Wireless Context Analysis
- Augmented Reality's Potential for Identifying and Mitigating Home Privacy Leaks
- I Always Feel Like Somebody's Sensing Me! A Framework to Detect, Identify, and Localize Clandestine Wireless Sensors
- Towards Learning-automation IoT Attack Detection through Reinforcement Learning
- Privacy-Preserving Detection of IoT Devices Connected Behind a NAT in a Smart Home Setup
- Internet of Things: Digital Footprints Carry A Device Identity
- Improving the network traffic classification using the Packet Vision approach
- On the Principle of Accountability: Challenges for Smart Homes & Cybersecurity
- 'They're all about pushing the products and shiny things rather than fundamental security' Mapping Socio-technical Challenges in Securing the Smart Home
- SERENIoT: Collaborative Network Security Policy Management and Enforcement for Smart Homes
- VINEVI: A Virtualized Network Vision Architecture for Smart Monitoring of Heterogeneous Applications and Infrastructures
- IoT Network Behavioral Fingerprint Inference with Limited Network Trace for Cyber Investigation: A Meta Learning Approach
- Generalized Encrypted Traffic Classification Using Inter-Flow Signals
- IoTAthena: Unveiling IoT Device Activities from Network Traffic
- Budgeted Online Selection of Candidate IoT Clients to Participate in Federated Learning