Abstract
The expansion of the Internet of Things (IoT) paradigm has brought with it the challenge of promptly detecting and evaluating attacks against the systems coexisting in it. One of the most recurrent methods used by cybercriminals is to exploit the vulnerabilities found in communication protocols, which can lead to them accessing, altering, and making data inaccessible and even bringing down a device or whole infrastructure. In the case of the IoT, the Message Queuing Telemetry Transport (MQTT) protocol is one of the most-used ones due to its lightness, allowing resource-constrained devices to communicate with each other. Improving its effectiveness, a lighter version of this protocol, namely MQTT for Sensor Networks (MQTT-SN), was especially designed for embedded devices on non-TCP/IP networks. Taking into account the importance of these protocols, together with the significance that security has when it comes to protecting the high-sensitivity data exchanged in IoT networks, this paper presents an exhaustive assessment of the MQTT-SN protocol and describes its shortcomings. In order to do so, seven different highly heterogeneous attacks were designed and tested, evaluating the different security impacts that they can have on a real MQTT-SN network and its performance. Each one of them was compared with a non-attacked implemented reference scenario, which allowed the comparison of an attacked system with that of a system without attacks. Finally, using the knowledge extracted from this evaluation, a threat detector is proposed that can be deployed in an IoT environment and detect previously unmodeled attacks.
Funder
Spanish Ministry of Science, Innovation and Universities and the European Union FEDER
Spanish Ministry of Economic Affairs and Digital Transformation
Spanish Ministry of Science and Innovation
University of Castilla La Mancha
JCCM
Subject
Fluid Flow and Transfer Processes,Computer Science Applications,Process Chemistry and Technology,General Engineering,Instrumentation,General Materials Science
Reference43 articles.
1. Projecting the growth and economic impact of the internet of things;Thierer;Georg. Mason Univ. Mercat. Center June,2015
2. A review and state of art of Internet of Things (IoT);Laghari;Arch. Comput. Methods Eng.,2021
3. State of the IoT 2020: 12 Billion IoT Connections, Surpassing Non-IoT for the First Time. 2022.
4. State of IoT 2022: Number of Connected IoT Devices Growing 18% to 14.4 Billion Globally. 2022.
5. Hunkeler, U., Truong, H.L., and Stanford-Clark, A. MQTT-S—A publish/subscribe protocol for Wireless Sensor Networks. Proceedings of the 2008 3rd International Conference on Communication Systems Software and Middleware and Workshops (COMSWARE’08).
Cited by
17 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献