Game of Hide-and-Seek: Exposing Hidden Interfaces in Embedded Web Applications of IoT Devices

Author:

Xie Wei1,Chen Jiongyi1,Wang Zhenhua1,Feng Chao1,Wang Enze1,Gao Yifei1,Wang Baosheng1,Lu Kai1

Affiliation:

1. National University of Defense Technology, China

Publisher

ACM

Reference45 articles.

1. [n. d.]. Smart Yet Flawed: IoT Device Vulnerabilities Explained. [Online]. Avaliable: https://www.trendmicro.com/vinfo/us/security/news/internet-of-things/smart-yet-flawed-iot-device-vulnerabilities-explained. [n. d.]. Smart Yet Flawed: IoT Device Vulnerabilities Explained. [Online]. Avaliable: https://www.trendmicro.com/vinfo/us/security/news/internet-of-things/smart-yet-flawed-iot-device-vulnerabilities-explained.

2. Omar Alrawi , Chaoshun Zuo , Ruian Duan , Ranjita Pai Kasturi , Zhiqiang Lin , and Brendan Saltaformaggio . 2019. The betrayal at cloud city: An empirical analysis of cloud-based mobile backends . In 28th {USENIX} Security Symposium ({USENIX} Security 19). 551–566. Omar Alrawi, Chaoshun Zuo, Ruian Duan, Ranjita Pai Kasturi, Zhiqiang Lin, and Brendan Saltaformaggio. 2019. The betrayal at cloud city: An empirical analysis of cloud-based mobile backends. In 28th {USENIX} Security Symposium ({USENIX} Security 19). 551–566.

3. Anastasios Arampatzis. [n. d.]. Top 10 Vulnerabilities that Make IoT Devices Insecure. [Online]. Avaliable: https://www.venafi.com/blog/top-10-vulnerabilities-make-iot-devices-insecure. Anastasios Arampatzis. [n. d.]. Top 10 Vulnerabilities that Make IoT Devices Insecure. [Online]. Avaliable: https://www.venafi.com/blog/top-10-vulnerabilities-make-iot-devices-insecure.

4. boa. 2005. Boa Webserver. [Online]. Avaliable: http://www.boa.org. boa. 2005. Boa Webserver. [Online]. Avaliable: http://www.boa.org.

5. Daming  D. Chen , Manuel Egele , Maverick Woo , and David Brumley . 2016 . Towards Automated Dynamic Analysis for Linux-based Embedded Firmware. In Network and Distributed System Security Symposium. Daming D. Chen, Manuel Egele, Maverick Woo, and David Brumley. 2016. Towards Automated Dynamic Analysis for Linux-based Embedded Firmware. In Network and Distributed System Security Symposium.

Cited by 7 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Firmulti Fuzzer: Discovering Multi-process Vulnerabilities in IoT Devices with Full System Emulation and VMI;Proceedings of the 5th Workshop on CPS&IoT Security and Privacy;2023-11-26

2. Model of Controlled Environment based on Blockchain and IoT;2023 4th International Conference on Communications, Information, Electronic and Energy Systems (CIEES);2023-11-23

3. A Survey of the Security Analysis of Embedded Devices;Sensors;2023-11-16

4. Harden-IoT: hardening the EoL devices by intercepting the attack vector for future B5G/6G IoT;Wireless Networks;2023-10-14

5. Unauthorized Access Detection for Network Device Firmware WEB Pages;Electronics;2023-08-31

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3