Abstract
Impersonation-based attacks on wireless networks are easy to perform and can significantly impact network security. Their detection is problematic due to the attacks utilizing legitimate functions. This paper proposes a novel algorithm based on Observe-Orientate-Decide-Act (OODA) loop and Cyber Kill Chain (CKC) strategies to detect and neutralize these attacks. To evaluate this approach, we conducted experiments using four attack methods on a wireless router equivalent device, five wireless client devices, and two attack devices. The system employs a Radio Frequency (RF) device identification system and attack state machine implemented using a Software Defined Networking (SDN) architecture and the P4 programming language. The technique remains compliant with the IEEE 802.11 standard and requires no client-side modifications. The results show that the RF section detected 97.5% (average) of impersonated frames, and the overall method neutralized all attacks in the four attack scenarios. This outcome demonstrates that this technique, built on the OODA loops and CKC methodology, using SDN architecture and P4, is suitable for real-time detection and prevention of wireless impersonation attacks.
Subject
Electrical and Electronic Engineering,Biochemistry,Instrumentation,Atomic and Molecular Physics, and Optics,Analytical Chemistry
Reference60 articles.
1. Aung, M.A.C., and Thant, K.P. (March, January 27). IEEE 802. 11 Attacks and defenses. . Proceedings of the Seventeenth International Conference on Computer Applications (ICCA 2019), Yangon, Myanmar.
2. (2009). Standard No. IEEE Std 802.11w-2009.
3. Ahmad, M.S., and Tadakamadla, S. (2011, January 14–17). Short paper: Security evaluation of IEEE 802.11w specification. Proceedings of the WiSec’11—Proceedings of the 4th ACM Conference on Wireless Network Security, Hamburg, Germany.
4. Vanhoef, M., and Ronen, E. (2020, January 18–21). Dragonblood: Analyzing the dragonfly handshake of WPA3 and EAP-pwd. Proceedings of the IEEE Symposium on Security and Privacy (SP), San Francisco, CA, USA.
5. Dalal, N., Akhtar, N., Gupta, A., Karamchandani, N., Kasbekar, G.S., and Parekh, J. (2022, January 4–8). A wireless intrusion detection system for 802.11 WPA3 networks. Proceedings of the 2022 14th International Conference on COMmunication Systems & NETworkS (COMSNETS), Bangalore, India.
Cited by
6 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献